Lucene search

K
cvelistMitreCVELIST:CVE-2012-1968
HistoryJul 28, 2012 - 6:00 p.m.

CVE-2012-1968

2012-07-2818:00:00
mitre
www.cve.org
6
bugzilla
privilege escalation
html bugmail
cve-2012-1968

AI Score

6

Confidence

Low

EPSS

0.002

Percentile

61.4%

Bugzilla 4.1.x and 4.2.x before 4.2.2 and 4.3.x before 4.3.2 uses bug-editor privileges instead of bugmail-recipient privileges during construction of HTML bugmail documents, which allows remote attackers to obtain sensitive description information by reading the tooltip portions of an HTML e-mail message.

AI Score

6

Confidence

Low

EPSS

0.002

Percentile

61.4%