Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2006-0916

Опубликовано: 28 фев. 2006
Источник: debian
EPSS Низкий

Описание

Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user from the login form, which could cause it to generate a partial URL in a form action that causes the user's browser to send the form data to another domain.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
bugzillafixed2.20.1-1package
bugzillanot-affectedwoodypackage
bugzillanot-affectedsargepackage

EPSS

Процентиль: 72%
0.00743
Низкий

Связанные уязвимости

ubuntu
больше 19 лет назад

Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user from the login form, which could cause it to generate a partial URL in a form action that causes the user's browser to send the form data to another domain.

nvd
больше 19 лет назад

Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user from the login form, which could cause it to generate a partial URL in a form action that causes the user's browser to send the form data to another domain.

github
больше 3 лет назад

Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user from the login form, which could cause it to generate a partial URL in a form action that causes the user's browser to send the form data to another domain.

EPSS

Процентиль: 72%
0.00743
Низкий