| ID | CVE-2014-6387 | ||||||
| Sažetak | gpc_api.php in MantisBT 1.2.17 and earlier allows remote attackers to bypass authenticated via a password starting will a null byte, which triggers an unauthenticated bind. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:L/Au:N/C:N/I:P/A:N | ||||||
| Zadnje važnije ažuriranje | 12-01-2021 - 18:05 | ||||||
| Objavljeno | 22-10-2014 - 14:55 |

