Lucene search

K
nvd[email protected]NVD:CVE-2011-2977
HistoryAug 09, 2011 - 7:55 p.m.

CVE-2011-2977

2011-08-0919:55:01
web.nvd.nist.gov
8

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

5.6

Confidence

Low

EPSS

0

Percentile

5.1%

Bugzilla 3.6.x before 3.6.6, 3.7.x, 4.0.x before 4.0.2, and 4.1.x before 4.1.3 on Windows does not delete the temporary files associated with uploaded attachments, which allows local users to obtain sensitive information by reading these files. NOTE: this issue exists because of a regression in 3.6.

Affected configurations

Nvd
Node
mozillabugzillaMatch3.6.0
OR
mozillabugzillaMatch3.6.1
OR
mozillabugzillaMatch3.6.2
OR
mozillabugzillaMatch3.6.3
OR
mozillabugzillaMatch3.6.4
OR
mozillabugzillaMatch3.6.5
OR
mozillabugzillaMatch3.7
OR
mozillabugzillaMatch3.7.1
OR
mozillabugzillaMatch3.7.2
OR
mozillabugzillaMatch3.7.3
OR
mozillabugzillaMatch4.0
OR
mozillabugzillaMatch4.0rc1
OR
mozillabugzillaMatch4.0rc2
OR
mozillabugzillaMatch4.0.1
OR
mozillabugzillaMatch4.1
OR
mozillabugzillaMatch4.1.1
OR
mozillabugzillaMatch4.1.2
AND
microsoftwindows
VendorProductVersionCPE
mozillabugzilla3.6.0cpe:2.3:a:mozilla:bugzilla:3.6.0:*:*:*:*:*:*:*
mozillabugzilla3.6.1cpe:2.3:a:mozilla:bugzilla:3.6.1:*:*:*:*:*:*:*
mozillabugzilla3.6.2cpe:2.3:a:mozilla:bugzilla:3.6.2:*:*:*:*:*:*:*
mozillabugzilla3.6.3cpe:2.3:a:mozilla:bugzilla:3.6.3:*:*:*:*:*:*:*
mozillabugzilla3.6.4cpe:2.3:a:mozilla:bugzilla:3.6.4:*:*:*:*:*:*:*
mozillabugzilla3.6.5cpe:2.3:a:mozilla:bugzilla:3.6.5:*:*:*:*:*:*:*
mozillabugzilla3.7cpe:2.3:a:mozilla:bugzilla:3.7:*:*:*:*:*:*:*
mozillabugzilla3.7.1cpe:2.3:a:mozilla:bugzilla:3.7.1:*:*:*:*:*:*:*
mozillabugzilla3.7.2cpe:2.3:a:mozilla:bugzilla:3.7.2:*:*:*:*:*:*:*
mozillabugzilla3.7.3cpe:2.3:a:mozilla:bugzilla:3.7.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 181

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

5.6

Confidence

Low

EPSS

0

Percentile

5.1%