Description
MantisBT (Mantis Bug Tracker) is an open source issue tracker. Improper escaping of a custom field's name allows an attacker to inject HTML and, if CSP settings permit, achieve execution of arbitrary JavaScript when resolving or closing issues (`bug_change_status_page.php`) belonging to a project linking said custom field, viewing issues (`view_all_bug_page.php`) when the custom field is displayed as a column, or printing issues (`print_all_bug_page.php`) when the custom field is displayed as a column. Version 2.26.2 contains a patch for the issue. As a workaround, ensure Custom Field Names do not contain HTML tags.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-1832 | MantisBT (Mantis Bug Tracker) is an open source issue tracker. Improper escaping of a custom field's name allows an attacker to inject HTML and, if CSP settings permit, achieve execution of arbitrary JavaScript when resolving or closing issues (`bug_change_status_page.php`) belonging to a project linking said custom field, viewing issues (`view_all_bug_page.php`) when the custom field is displayed as a column, or printing issues (`print_all_bug_page.php`) when the custom field is displayed as a column. Version 2.26.2 contains a patch for the issue. As a workaround, ensure Custom Field Names do not contain HTML tags. |
Github GHSA |
GHSA-wgx7-jp56-65mq | Mantis Bug Tracker (MantisBT) vulnerable to cross-site scripting |
References
History
Thu, 16 Jan 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mantisbt
Mantisbt mantisbt |
|
| CPEs | cpe:2.3:a:mantisbt:mantisbt:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Mantisbt
Mantisbt mantisbt |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T02:42:59.876Z
Reserved: 2024-04-30T06:56:33.384Z
Link: CVE-2024-34081
Updated: 2024-08-02T02:42:59.876Z
Status : Analyzed
Published: 2024-05-14T15:38:30.257
Modified: 2025-01-16T16:42:57.800
Link: CVE-2024-34081
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA