CVE-2019-15715
HIGHMantisBT < 1.3.20 - Authenticated Remote Code Execution via Command Injection
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2019-15715. PoCs published by Nikolas Geiselman, mcornaglia.
AI-analyzed exploit summary This exploit chains CVE-2017-7615 (password reset) and CVE-2019-15715 (command injection) to achieve unauthenticated RCE in Mantis Bug Tracker 2.3.0. It resets the admin password, logs in, configures malicious settings, and triggers a reverse shell.
Description
MantisBT before 1.3.20 and 2.22.1 allows Post Authentication Command Injection, leading to Remote Code Execution.
Exploits (2)
This exploit chains CVE-2017-7615 (password reset) and CVE-2019-15715 (command injection) to achieve unauthenticated RCE in Mantis Bug Tracker 2.3.0. It resets the admin password, logs in, configures malicious settings, and triggers a reverse shell.
This repository contains a functional Python exploit for CVE-2019-15715, targeting Mantis Bug Tracker versions <=2.22.0. The exploit leverages unauthenticated remote code execution by manipulating configuration options to inject a reverse shell payload.
References (8)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H