Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wq8h-94wp-w9mg

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote attackers with privileges to grant membership to any group to execute arbitrary SQL.

SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote attackers with privileges to grant membership to any group to execute arbitrary SQL.

EPSS

Процентиль: 65%
0.00502
Низкий

Связанные уязвимости

ubuntu
почти 21 год назад

SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote attackers with privileges to grant membership to any group to execute arbitrary SQL.

nvd
почти 21 год назад

SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote attackers with privileges to grant membership to any group to execute arbitrary SQL.

debian
почти 21 год назад

SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before ...

EPSS

Процентиль: 65%
0.00502
Низкий