Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-78fp-33xc-j734

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

EPSS

Процентиль: 74%
0.00862
Низкий

Связанные уязвимости

redhat
около 24 лет назад

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

nvd
около 23 лет назад

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

debian
около 23 лет назад

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error me ...

EPSS

Процентиль: 74%
0.00862
Низкий