漏洞信息详情
Mantis New Account Signup Mass Emailing漏洞
- CNNVD编号:CNNVD-200408-209
- 危害等级: 中危
![图片[1]-Mantis New Account Signup Mass Emailing漏洞-一一网](https://www.proyy.com/skycj/data/images/2021-05-26/30f462579bec41fc25e0b1d57503e6d6.png)
- CVE编号:
CVE-2004-1731
- 漏洞类型:
设计错误
- 发布时间:
2004-08-20
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
mantis - 漏洞来源:
Jose Antonio
-
漏洞简介
Mantis bugtracker的signup_page.php存在漏洞。远程攻击者通过创建多个用户和提供相同电子邮件地址来发送电子邮件炸弹。
漏洞公告
The vendor has reportedly implemented a captcha system for new account signup requests that may mitigate the possibility of an automated exploit of this vulnerability. At the time of this writing, no released versions of the package exist that fix this vulnerability.
参考网址
来源: XF
名称: mantis-improper-account-validation(17093)
链接:http://xforce.iss.net/xforce/xfdb/17093
来源: BID
名称: 10995
链接:http://www.securityfocus.com/bid/10995
来源: BUGTRAQ
名称: 20040820 Multiple Vulnerabilities in Mantis Bugtracker
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=109312225727345&w=2
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END






















![[桜井宁宁]COS和泉纱雾超可爱写真福利集-一一网](https://www.proyy.com/skycj/data/images/2020-12-13/4d3cf227a85d7e79f5d6b4efb6bde3e8.jpg)

![[桜井宁宁] 爆乳奶牛少女cos写真-一一网](https://www.proyy.com/skycj/data/images/2020-12-13/d40483e126fcf567894e89c65eaca655.jpg)