CVE-2010-2574
Mantisbt - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in manage_proj_cat_add.php in MantisBT 1.2.2 allows remote authenticated administrators to inject arbitrary web script or HTML via the name parameter in an Add Category action.
References (12)
Scores
EPSS
0.0042
EPSS Percentile
61.7%
Classification
CWE
CWE-79
Status
published
Affected Products (3)
mantisbt/mantisbt
mantisbt/mantisbt
Packagist
n/a/n/a
Timeline
Published
Aug 10, 2010
Tracked Since
Feb 18, 2026