The print_test_result function in admin/upgrade_unattended.php in MantisBT 1.1.0a3 through 1.2.x before 1.2.18 allows remote attackers to obtain database credentials via a URL in the hostname parameter and reading the parameters in the response sent to the URL.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/71359 | vdb entry |
https://github.com/mantisbt/mantisbt/commit/0826cef8 | vendor advisory |
http://www.mantisbt.org/bugs/view.php?id=17877 | vendor advisory |
http://seclists.org/oss-sec/2014/q4/863 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/99031 | vdb entry |