CVE-2011-3755
MantisBT 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveal
MantisBT 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by view_all_inc.php and certain other files.
MEDIUM · CVSS 5
EPSS 0.00357
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0