cbcvebase.
CVE-2011-3668
published 2012-01-02

CVE-2011-3668: Cross-site request forgery (CSRF) vulnerability in post_bug.cgi in Bugzilla 2.x, 3.x, and 4.x before 4.2rc1 allows remote attackers to hijack the…

medium6.8CVSS 3.1
AVNACMAuNCPIPAP
Cross-site request forgery (CSRF) vulnerability in post_bug.cgi in Bugzilla 2.x, 3.x, and 4.x before 4.2rc1 allows remote attackers to hijack the authentication of arbitrary users for requests that create bug reports.

Affected

145 ranges· showing 25
VendorProductVersion rangeFixed in
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla
mozillabugzilla