Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p755-fv54-jvjv

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Bugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on in substring mode, allows attackers to list all users whose names match an arbitrary substring, even when the usevisibilitygroups parameter is set.

Bugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on in substring mode, allows attackers to list all users whose names match an arbitrary substring, even when the usevisibilitygroups parameter is set.

EPSS

Процентиль: 68%
0.00593
Низкий

Связанные уязвимости

ubuntu
почти 20 лет назад

Bugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on in substring mode, allows attackers to list all users whose names match an arbitrary substring, even when the usevisibilitygroups parameter is set.

nvd
почти 20 лет назад

Bugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on in substring mode, allows attackers to list all users whose names match an arbitrary substring, even when the usevisibilitygroups parameter is set.

debian
почти 20 лет назад

Bugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on ...

EPSS

Процентиль: 68%
0.00593
Низкий