← Vulnerability feed

Vulnerability record · CVE-2010-4349 · published 3 January 2011

CVE-2010-4349: Mantisbt information exposure vulnerability

Mantisbt · Mantisbt

admin/upgrade_unattended.php in MantisBT before 1.2.4 allows remote attackers to obtain sensitive information via an invalid db_type parameter, which reveals the installation path in an error message, related to an unsafe call by MantisBT to a function in the ADOdb Library for PHP.

5.0 CVSS 2.0 Medium EPSS 8.8% · top 5.0% CWE-200 · Information exposure
5.0CVSS 2.0 base score
8.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
28References, 8 tagged exploit
16 Jun 2026Last modified by NVD

Description

admin/upgrade_unattended.php in MantisBT before 1.2.4 allows remote attackers to obtain sensitive information via an invalid db_type parameter, which reveals the installation path in an error message, related to an unsafe call by MantisBT to a function in the ADOdb Library for PHP.

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052721.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052730.html
http://openwall.com/lists/oss-security/2010/12/15/4 ExploitPatch
http://openwall.com/lists/oss-security/2010/12/16/1 ExploitPatch
http://secunia.com/advisories/42772
http://secunia.com/advisories/51199
http://security.gentoo.org/glsa/glsa-201211-01.xml
http://www.mantisbt.org/blog/?p=123
http://www.mantisbt.org/bugs/changelog_page.php?version_id=112
http://www.mantisbt.org/bugs/view.php?id=12607
http://www.vupen.com/english/advisories/2011/0002
http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4983.php ExploitPatch
https://bugzilla.redhat.com/show_bug.cgi?id=663230 ExploitPatch
https://exchange.xforce.ibmcloud.com/vulnerabilities/64463
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052721.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052730.html
http://openwall.com/lists/oss-security/2010/12/15/4 ExploitPatch
http://openwall.com/lists/oss-security/2010/12/16/1 ExploitPatch
http://secunia.com/advisories/42772
http://secunia.com/advisories/51199
http://security.gentoo.org/glsa/glsa-201211-01.xml
http://www.mantisbt.org/blog/?p=123
http://www.mantisbt.org/bugs/changelog_page.php?version_id=112
http://www.mantisbt.org/bugs/view.php?id=12607
http://www.vupen.com/english/advisories/2011/0002
http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4983.php ExploitPatch
https://bugzilla.redhat.com/show_bug.cgi?id=663230 ExploitPatch
https://exchange.xforce.ibmcloud.com/vulnerabilities/64463

Track CVE-2010-4349 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.6CVE-2019-15074Mantisbt cross-site scripting vulnerabilityThe Timeline feature in my_view_page.php in MantisBT through 2.21.1 has a stored cross-site scripting (XSS) vulnerability, allowing execution of arbi…EPSS 2.1%9.3CVE-2026-30849Mantisbt vulnerabilityMantis Bug Tracker (MantisBT) is an open source issue tracker. Versions prior to 2.28.1 running on MySQL family databases are affected by an authenti…EPSS 2.4%8.8CVE-2025-47776Mantisbt vulnerabilityMantis Bug Tracker (MantisBT) is an open source issue tracker. Due to incorrect use of loose (==) instead of strict (===) comparison in the authentic…EPSS 0.32%8.8CVE-2017-7615MantisBT weak password reset allows unauthenticated admin accessMantisBT through 2.3.0 mishandles password reset confirmation, allowing an attacker to supply an empty confirm_hash value to verify.php. This permits…EPSS 91%analysed8.6CVE-2026-33517Mantisbt cross-site scripting vulnerabilityMantis Bug Tracker (MantisBT) is an open source issue tracker. In version 2.28.0, when deleting a Tag (tag_delete.php), improper escaping of its name…EPSS 0.35%8.6CVE-2026-33548Mantisbt cross-site scripting vulnerabilityMantis Bug Tracker (MantisBT) is an open source issue tracker. In version 2.28.0, improper escaping of tag names retrieved from History in Timeline (…EPSS 0.29%8.3CVE-2024-23830Mantisbt injection vulnerabilityMantisBT is an open source issue tracker. Prior to version 2.26.1, an unauthenticated attacker who knows a user's email address and username can hija…EPSS 0.96%8.1CVE-2009-20001Mantisbt insufficient session expiration vulnerabilityAn issue was discovered in MantisBT before 2.24.5. It associates a unique cookie string with each user. This string is not reset upon logout (i.e., t…EPSS 0.87%

Source: NIST National Vulnerability Database (record CVE-2010-4349), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.