PublicDate: 2008-01-03 22:46:00 UTC Candidate: CVE-2007-6611 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6611 Description: Cross-site scripting (XSS) vulnerability in view.php in Mantis before 1.1.0 allows remote attackers to inject arbitrary web script or HTML via a filename, related to bug_report.php. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_mantis: vendor: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=458377 upstream_mantis: released (1.1.0) dapper_mantis: ignored (reached end-of-life) edgy_mantis: needed (reached end-of-life) feisty_mantis: needed (reached end-of-life) gutsy_mantis: needed (reached end-of-life) hardy_mantis: released (1.0.8-4) intrepid_mantis: released (1.0.8-4) jaunty_mantis: released (1.0.8-4) karmic_mantis: released (1.0.8-4) devel_mantis: released (1.0.8-4)