Release date:
Updated on:
Affected Systems:
Mantisbt <1.2.16
Description:
--------------------------------------------------------------------------------
Bugtraq id: 65445
CVE (CAN) ID: CVE-2014-1608
MantisBT is a Web-based bug Tracking System.
In versions earlier than MantisBT 1.2.16, The mci_file_get function in api/soap/mc_file_api.php has the SQL injection vulnerability, which allows remote attackers to use the specially crafted envelope tag in the mc_issue_attachment_get SOAP request, attackers can exploit this vulnerability to execute arbitrary SQL commands.
<* Source: Martin Herfurt (martin.herfurt@trifinite.org)
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Mantisbt
--------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.mantisbt.org/
Https://github.com/mantisbt/mantisbt/commit/00b4c17088fa56594d85fe46b6c6057bb3421102
Http://www.mantisbt.org/bugs/view.php? Id = 16879