HTTP: Mantis Bug Tracker confirm_hash Remote Password Reset

A remote password reset vulnerability has been reported in Mantis Bug Tracker. Successful exploitation results in the attacker being able to change the password for arbitrary accounts.

Extended Description

MantisBT through 2.3.0 allows arbitrary password reset and unauthenticated admin access via an empty confirm_hash value to verify.php.

Affected Products

Mantisbt mantisbt

Short Name
HTTP:STC:MANTIS-PASS-RESET
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
Bug CVE-2017-7615 Mantis Password Remote Reset Tracker confirm_hash
Release Date
05/18/2017
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3337
False Positive
Unknown
Vendors

Mantisbt

CVSS Score

6.5

Found a potential security threat?