Description
An issue was discovered in MantisBT before 2.24.4. A missing access check in bug_actiongroup.php allows an attacker (with rights to create new issues) to use the COPY group action to create a clone, including all bugnotes and attachments, of any private issue (i.e., one having Private view status, or belonging to a private Project) via the bug_arr[] parameter. This provides full access to potentially confidential information.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-21965 | MantisBT Missing Authorization access check in bug_actiongroup.php |
Github GHSA |
GHSA-f38c-wxp6-8xjv | MantisBT Missing Authorization access check in bug_actiongroup.php |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T16:55:10.631Z
Reserved: 2020-12-07T00:00:00.000Z
Link: CVE-2020-29604
No data.
Status : Modified
Published: 2021-01-29T07:15:17.873
Modified: 2024-11-21T05:24:18.070
Link: CVE-2020-29604
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA