Mozilla

Bugzilla

145 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.64%
  • Veröffentlicht 28.02.2006 11:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Bugzilla 2.16.10 does not properly handle certain characters in the (1) maxpatchsize and (2) maxattachmentsize parameters in attachment.cgi, which allows remote attackers to trigger a SQL error.

  • EPSS 0.74%
  • Veröffentlicht 28.02.2006 11:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user from the login form, which could cause it to generate a partial URL in a form action that causes the user's browser to send the form data to another ...

  • EPSS 1.54%
  • Veröffentlicht 28.12.2005 02:03:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.

  • EPSS 0.52%
  • Veröffentlicht 05.10.2005 21:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Bugzilla 2.18rc1 through 2.18.3, 2.19 through 2.20rc2, and 2.21 allows remote attackers to obtain sensitive information such as the list of installed products via the config.cgi file, which is accessible even when the requirelogin parameter is set.

  • EPSS 0.59%
  • Veröffentlicht 05.10.2005 21:02:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Bugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on in substring mode, allows attackers to list all users whose names match an arbitrary substring, even when the usevisibilitygroups parameter is set.

  • EPSS 0.38%
  • Veröffentlicht 08.07.2005 04:00:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The Flag::validate and Flag::modify functions in Bugzilla 2.17.1 to 2.18.1 and 2.19.1 to 2.19.3 do not verify that the flag ID is appropriate for the given bug or attachment ID, which allows users to change flags on arbitrary bugs and obtain a bug su...

  • EPSS 0.4%
  • Veröffentlicht 08.07.2005 04:00:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Bugzilla 2.17.x, 2.18 before 2.18.2, 2.19.x, and 2.20 before 2.20rc1 inserts a bug into the database before it is marked private, which introduces a race condition and allows attackers to access information about the bug via buglist.cgi before MySQL ...

  • EPSS 0.81%
  • Veröffentlicht 14.05.2005 04:00:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Bugzilla 2.10 through 2.18, 2.19.1, and 2.19.2 displays a different error message depending on whether a product exists or not, which allows remote attackers to determine hidden products.

Exploit
  • EPSS 1.82%
  • Veröffentlicht 12.05.2005 04:00:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

post_bug.cgi in Bugzilla 2.10 through 2.18, 2.19.1, and 2.19.2 allows remote authenticated users to "enter bugs into products that are closed for bug entry" by modifying the URL to specify the name of the product.

Exploit
  • EPSS 0.8%
  • Veröffentlicht 12.05.2005 04:00:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Bugzilla 2.17.1 through 2.18, 2.19.1, and 2.19.2, when a user is prompted to log in while attempting to view a chart, displays the password in the URL, which may allow local users to gain sensitive information from web logs or browser history.