CVE-2008-4689
Mantis before 1.1.3 does not unset the session cookie during logout, which makes it easier for remote attackers to hijac
Mantis before 1.1.3 does not unset the session cookie during logout, which makes it easier for remote attackers to hijack sessions.
HIGH · CVSS 7.5
EPSS 0.01112
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0