CVE

Id
76807  
CVE No.
CVE-2014-9506  
Status
Candidate  
Description
MantisBT before 1.2.18 does not properly check permissions when sending an email that indicates when a monitored issue is related to another issue, which allows remote authenticated users to obtain sensitive information about restricted issues.  
Phase
Assigned (20150104)  
Votes
None (candidate not yet proposed)  
Comments