Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-78fp-33xc-j734

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

EPSS

Процентиль: 74%
0.00862
Низкий

Связанные уязвимости

redhat
почти 24 года назад

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

nvd
почти 23 года назад

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

debian
почти 23 года назад

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error me ...

EPSS

Процентиль: 74%
0.00862
Низкий