Mantis Bug Tracker 1.2.17 PHP Code Injection

Mantis Bug Tracker versions 1.2.0 through 1.2.17 suffer from a PHP code injection vulnerability.