CVE-2020-28413

Publication date

2020-12-30 21:28:21

Family

mitre

State

PUBLISHED

Description

In MantisBT 2.24.3, SQL Injection can occur in the parameter "access" of the mc_project_get_users function through the API SOAP.