Description
An XSS vulnerability in MantisBT before 2.25.5 allows remote attackers to attach crafted SVG documents to issue reports or bugnotes. When a user or an admin clicks on the attachment, file_download.php opens the SVG document in a browser tab instead of downloading it as a file, causing the JavaScript code to execute.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-36947 | MantisBT XSS through crafted SVG documents in file_download.php |
Github GHSA |
GHSA-qghg-v7xv-q98q | MantisBT XSS through crafted SVG documents in file_download.php |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T08:09:22.658Z
Reserved: 2022-06-17T00:00:00.000Z
Link: CVE-2022-33910
No data.
Status : Modified
Published: 2022-06-24T17:15:08.850
Modified: 2024-11-21T07:08:35.157
Link: CVE-2022-33910
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA