CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
AI Score
Confidence
Low
EPSS
Percentile
84.2%
Bugzilla before 2.14.1 allows remote attackers to inject arbitrary SQL code and create files or gain privileges via (1) the sql parameter in buglist.cgi, (2) invalid field names from the “boolean chart” query in buglist.cgi, (3) the mybugslink parameter in userprefs.cgi, (4) a malformed bug ID in the buglist parameter in long_list.cgi, and (5) the value parameter in editusers.cgi, which allows groupset privileges to be modified by attackers with blessgroupset privileges.
archives.neohapsis.com/archives/bugtraq/2002-01/0034.html
archives.neohapsis.com/archives/bugtraq/2002-01/0052.html
bugzilla.mozilla.org/show_bug.cgi?id=108812
bugzilla.mozilla.org/show_bug.cgi?id=108821
bugzilla.mozilla.org/show_bug.cgi?id=108822
bugzilla.mozilla.org/show_bug.cgi?id=109679
bugzilla.mozilla.org/show_bug.cgi?id=109690
rhn.redhat.com/errata/RHSA-2002-001.html
www.bugzilla.org/bugzilla2.14to2.14.1.patch
www.bugzilla.org/security2_14_1.html
www.iss.net/security_center/static/7807.php
www.iss.net/security_center/static/7809.php
www.iss.net/security_center/static/7811.php
www.iss.net/security_center/static/7813.php
www.iss.net/security_center/static/7814.php
www.securityfocus.com/bid/3801
www.securityfocus.com/bid/3802
www.securityfocus.com/bid/3804
www.securityfocus.com/bid/3805