CVE-2002-0009
published 2002-01-31CVE-2002-0009: show_bug.cgi in Bugzilla before 2.14.1 allows a user with "Bugs Access" privileges to see other products that are not accessible to the user, by submitting a…
PriorityP417medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
1.19%
64.8th percentile
show_bug.cgi in Bugzilla before 2.14.1 allows a user with "Bugs Access" privileges to see other products that are not accessible to the user, by submitting a bug and reading the resulting Product pulldown menu.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | bugzilla | <= 2.14.1 | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2002-01-05·CVSS 5.0
CVE-2002-0009 [MEDIUM] security flaw
security flaw
show_bug.cgi in Bugzilla before 2.14.1 allows a user with "Bugs Access" privileges to see other products that are not accessible to the user, by submitting a bug and reading the resulting Product pulldown menu.
GHSA
GHSA-m9mc-j7jm-3wgj: show_bug
ghsa_unreviewed·2022-04-30
CVE-2002-0009 [MEDIUM] GHSA-m9mc-j7jm-3wgj: show_bug
show_bug.cgi in Bugzilla before 2.14.1 allows a user with "Bugs Access" privileges to see other products that are not accessible to the user, by submitting a bug and reading the resulting Product pulldown menu.
No detection rules found.
http://archives.neohapsis.com/archives/bugtraq/2002-01/0034.htmlhttp://bugzilla.mozilla.org/show_bug.cgi?id=102141http://rhn.redhat.com/errata/RHSA-2002-001.htmlhttp://www.bugzilla.org/security2_14_1.htmlhttp://www.iss.net/security_center/static/7802.phphttp://www.securityfocus.com/bid/3798http://archives.neohapsis.com/archives/bugtraq/2002-01/0034.htmlhttp://bugzilla.mozilla.org/show_bug.cgi?id=102141http://rhn.redhat.com/errata/RHSA-2002-001.htmlhttp://www.bugzilla.org/security2_14_1.htmlhttp://www.iss.net/security_center/static/7802.phphttp://www.securityfocus.com/bid/3798
2002-01-31
Published