CVE-2001-1406
published 2001-09-10CVE-2001-1406: process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved between product groups, which will cause the bug to have the old…
PriorityP46low2.1CVSS 2.0
AVLACLAuNCPINAN
EPSS
0.32%
24.5th percentile
process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved between product groups, which will cause the bug to have the old group's restrictions, which might not be as stringent.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | bugzilla | — | — |
| mozilla | bugzilla | — | — |
| mozilla | bugzilla | — | — |
| mozilla | bugzilla | — | — |
| mozilla | bugzilla | — | — |
| mozilla | bugzilla | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2001-08-29·CVSS 2.1
CVE-2001-1406 [LOW] security flaw
security flaw
process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved between product groups, which will cause the bug to have the old group's restrictions, which might not be as stringent.
GHSA
GHSA-fq54-7wqq-xmv8: process_bug
ghsa_unreviewed·2022-04-30
CVE-2001-1406 [LOW] GHSA-fq54-7wqq-xmv8: process_bug
process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved between product groups, which will cause the bug to have the old group's restrictions, which might not be as stringent.
No detection rules found.
No public exploits indexed.
http://bugzilla.mozilla.org/show_bug.cgi?id=66235http://marc.info/?l=bugtraq&m=99912899900567http://www.iss.net/security_center/static/10478.phphttp://www.redhat.com/support/errata/RHSA-2001-107.htmlhttp://bugzilla.mozilla.org/show_bug.cgi?id=66235http://marc.info/?l=bugtraq&m=99912899900567http://www.iss.net/security_center/static/10478.phphttp://www.redhat.com/support/errata/RHSA-2001-107.html
2001-09-10
Published