Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2007-5038

Опубликовано: 24 сент. 2007
Источник: debian
EPSS Низкий

Описание

The offer_account_by_email function in User.pm in the WebService for Bugzilla before 3.0.2, and 3.1.x before 3.1.2, does not check the value of the createemailregexp parameter, which allows remote attackers to bypass intended restrictions on account creation.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
bugzillanot-affectedpackage

EPSS

Процентиль: 75%
0.0093
Низкий

Связанные уязвимости

nvd
около 18 лет назад

The offer_account_by_email function in User.pm in the WebService for Bugzilla before 3.0.2, and 3.1.x before 3.1.2, does not check the value of the createemailregexp parameter, which allows remote attackers to bypass intended restrictions on account creation.

github
больше 3 лет назад

The offer_account_by_email function in User.pm in the WebService for Bugzilla before 3.0.2, and 3.1.x before 3.1.2, does not check the value of the createemailregexp parameter, which allows remote attackers to bypass intended restrictions on account creation.

EPSS

Процентиль: 75%
0.0093
Низкий