Описание
SQL injection vulnerability in collectstats.pl for Bugzilla 2.16.3 and earlier allows remote authenticated users with editproducts privileges to execute arbitrary SQL via the product name.
SQL injection vulnerability in collectstats.pl for Bugzilla 2.16.3 and earlier allows remote authenticated users with editproducts privileges to execute arbitrary SQL via the product name.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2003-1042
- https://exchange.xforce.ibmcloud.com/vulnerabilities/13594
- http://bugzilla.mozilla.org/show_bug.cgi?id=214290
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000774
- http://www.securityfocus.com/archive/1/343185
- http://www.securityfocus.com/bid/8953
EPSS
Процентиль: 68%
0.00569
Низкий
CVE ID
Связанные уязвимости
nvd
около 21 года назад
SQL injection vulnerability in collectstats.pl for Bugzilla 2.16.3 and earlier allows remote authenticated users with editproducts privileges to execute arbitrary SQL via the product name.
debian
около 21 года назад
SQL injection vulnerability in collectstats.pl for Bugzilla 2.16.3 and ...
EPSS
Процентиль: 68%
0.00569
Низкий