CVE-2017-6958

Publication date

2017-03-17 08:55:00

Family

mitre

State

PUBLISHED

Description

An XSS vulnerability in the MantisBT Source Integration Plugin (before 2.0.2) search result page allows an attacker to inject arbitrary HTML or JavaScript (if MantisBTs CSP settings permit it) by crafting any valid parameter.