cbcvebase.
CVE-2001-1407
published 2001-09-10

CVE-2001-1407: Bugzilla before 2.14 allows Bugzilla users to bypass group security checks by marking a bug as the duplicate of a restricted bug, which adds the user to the CC…

high7.5CVSS 3.1
AVNACLAuNCPIPAP
Bugzilla before 2.14 allows Bugzilla users to bypass group security checks by marking a bug as the duplicate of a restricted bug, which adds the user to the CC list of the restricted bug and allows the user to view the bug.

Affected

6 ranges
VendorProductVersion rangeFixed in
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla