← Back

CVE-2005-4519

nvd nist
Published: Dec 28, 2005Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Multiple SQL injection vulnerabilities in the manage user page (manage_user_page.php) in Mantis 1.0.0rc3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) prefix and (2) sort parameters to the manage user page (manage_user_page.php), or (3) the sort parameter to view_all_set.php.

Affected (65)

Products: Mantis: Mantis
1 product
Mantis
Configuration A
65 vulnerable
Vulnerable SoftwareAffected Versions
Mantis
Up to 0.19.3
Up to 1.0.0_rc3
Version 0.10.1
Version 0.10.2
Version 0.10
Version 0.11.1
Version 0.11
Version 0.12
Version 0.13.1
Version 0.13
Version 0.14.1
Version 0.14.2
Version 0.14.3
Version 0.14.4
Version 0.14.5
Version 0.14.6
Version 0.14.7
Version 0.14.8
Version 0.14
Version 0.15.10
Version 0.15.11
Version 0.15.12
Version 0.15.1
Version 0.15.2
Version 0.15.3
Version 0.15.4
Version 0.15.5
Version 0.15.6
Version 0.15.7
Version 0.15.8
Version 0.15.9
Version 0.15
Version 0.16.0
Version 0.16.1
Version 0.16
Version 0.17.0
Version 0.17.1
Version 0.17.2
Version 0.17.3
Version 0.17.4
Version 0.17.4a
Version 0.17.5
Version 0.17
Version 0.18.0_rc1
Version 0.18.0a2
Version 0.18.0a3
Version 0.18.0a4
Version 0.18.2
Version 0.18.3
Version 0.18
Version 0.18a1
Version 0.19.0
Version 0.19.0_rc1
Version 0.19.0a1
Version 0.19.0a2
Version 0.19.0a
Version 0.19.1
Version 0.19.2
Version 0.9.1
Version 0.9
Version 1.0.0_rc1
Version 1.0.0_rc2
Version 1.0.0a1
Version 1.0.0a2
Version 1.0.0a3

References (24)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Patch
Source: cve@mitre.org
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.