← Zuruck zu CVEs
CVE-2004-0707
N/ABeschreibung
SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote attackers with privileges to grant membership to any group to execute arbitrary SQL.
CVE Details
CVSS v3.1 BewertungN/A
Veroffentlicht7/27/2004
Zuletzt geandert4/3/2025
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
mozilla:bugzilla
Referenzen
http://bugzilla.mozilla.org/show_bug.cgi?id=244272(cve@mitre.org)
http://marc.info/?l=bugtraq&m=108965446813639&w=2(cve@mitre.org)
http://www.securityfocus.com/bid/10698(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16668(cve@mitre.org)
http://bugzilla.mozilla.org/show_bug.cgi?id=244272(af854a3a-2127-422b-91ae-364da2661108)
http://marc.info/?l=bugtraq&m=108965446813639&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/10698(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16668(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.