Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4cjg-mq5r-j9q6

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly handle certain characters in the mostfreqthreshold parameter in duplicates.cgi, which allows remote attackers to trigger a SQL error.

Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly handle certain characters in the mostfreqthreshold parameter in duplicates.cgi, which allows remote attackers to trigger a SQL error.

EPSS

Процентиль: 72%
0.00757
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 19 лет назад

Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly handle certain characters in the mostfreqthreshold parameter in duplicates.cgi, which allows remote attackers to trigger a SQL error.

nvd
больше 19 лет назад

Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly handle certain characters in the mostfreqthreshold parameter in duplicates.cgi, which allows remote attackers to trigger a SQL error.

debian
больше 19 лет назад

Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly hand ...

EPSS

Процентиль: 72%
0.00757
Низкий

Дефекты

CWE-20