First published: Fri Jun 24 2022(Updated: )
An XSS vulnerability in MantisBT before 2.25.5 allows remote attackers to attach crafted SVG documents to issue reports or bugnotes. When a user or an admin clicks on the attachment, file_download.php opens the SVG document in a browser tab instead of downloading it as a file, causing the JavaScript code to execute.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mantisbt Mantisbt | <2.25.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-33910 is an XSS vulnerability in MantisBT before version 2.25.5.
CVE-2022-33910 allows remote attackers to attach crafted SVG documents to issue reports or bugnotes in MantisBT.
Remote attackers can exploit CVE-2022-33910 by tricking a user or admin into clicking on a crafted SVG document attachment, which will be opened in a browser tab instead of being downloaded, allowing the execution of malicious JavaScript.
CVE-2022-33910 has a severity rating of medium with a CVSS score of 5.4.
To fix CVE-2022-33910, upgrade MantisBT to version 2.25.5 or higher.