VDB
CVE-2012-1121
CVE-2012-1121
PUBLISHED
CVSS 4.900000095367432 MEDIUM
MantisBT before 1.2.9 does not properly check permissions, which allows remote authenticated users with manager privileges to (1) modify or (2) delete global categories.
EPSS 1.24% · 79.6th percentile
Risk Scores
CVSS 2.0
4.900000095367432
EPSS Score
1.24%
79.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| mantisbt | mantisbt | 1.2.3, 0, 0.19.0 |
| n/a | n/a | * |
Timeline
- Jun 29, 2012 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
References
- http://secunia.com/advisories/48258 url
- http://secunia.com/advisories/51199 url
- 52313 vdb
- https://github.com/mantisbt/mantisbt/commit/9443258724e84cb388aa1865b775beaecd80596d url
- FEDORA-2012-18299 vendor-advisory
- GLSA-201211-01 vendor-advisory
- http://www.mantisbt.org/bugs/changelog_page.php?version_id=140 url
- http://www.mantisbt.org/bugs/view.php?id=13561 url
- FEDORA-2012-18294 vendor-advisory
- [oss-security] 20120306 Re: CVE request: mantisbt before 1.2.9 mailing-list
- FEDORA-2012-18273 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2012-1121 advisory