Mozilla Bugzilla vulnerabilities
144 known vulnerabilities affecting mozilla/bugzilla.
Total CVEs
144
CISA KEV
0
Public exploits
5
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH36MEDIUM88LOW17
Vulnerabilities
Page 3 of 8
CVE-2001-1404P4HIGHCVSS 7.5v2.4v2.6+4 more2001-09-10
CVE-2001-1404 [HIGH] CVE-2001-1404: Bugzilla before 2.14 stores user passwords in plaintext and sends password requests in an email mess
Bugzilla before 2.14 stores user passwords in plaintext and sends password requests in an email message, which could allow attackers to gain privileges.
nvd
CVE-2004-0703P4HIGHCVSS 7.5v2.4v2.6+22 more2004-07-27
CVE-2004-0703 [HIGH] CVE-2004-0703: Unknown vulnerability in the administrative controls in Bugzilla 2.17.1 through 2.17.7 allows users
Unknown vulnerability in the administrative controls in Bugzilla 2.17.1 through 2.17.7 allows users with "grant membership" privileges to grant memberships to groups that the user does not control.
nvd
CVE-2009-1213P4MEDIUMCVSS 6.8v3.2v3.2.1+5 more2009-04-01
CVE-2009-1213 [MEDIUM] CWE-352 CVE-2009-1213: Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 3.2 before 3.2.3, 3.3
Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 3.2 before 3.2.3, 3.3 before 3.3.4, and earlier versions allows remote attackers to hijack the authentication of arbitrary users for requests that use attachment editing.
nvd
CVE-2006-0913P4MEDIUMCVSS 5.5v2.17.1v2.17.3+16 more2006-02-28
CVE-2006-0913 [MEDIUM] CVE-2006-0913: SQL injection vulnerability in whineatnews.pl in Bugzilla 2.17 through 2.18.4 and 2.20 allows remote
SQL injection vulnerability in whineatnews.pl in Bugzilla 2.17 through 2.18.4 and 2.20 allows remote authenticated users with administrative privileges to execute arbitrary SQL commands via the whinedays parameter, as accessible from editparams.cgi.
nvd
CVE-2002-0811P4HIGHCVSS 7.5v2.14v2.14.1+1 more2002-08-12
CVE-2002-0811 [HIGH] CVE-2002-0811: Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, may allow remote attackers to cause a denial o
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, may allow remote attackers to cause a denial of service or execute certain queries via a SQL injection attack on the sort order parameter to buglist.cgi.
nvd
CVE-2001-1401P4HIGHCVSS 7.5v2.4v2.6+4 more2001-09-10
CVE-2001-1401 [HIGH] CVE-2001-1401: Bugzilla before 2.14 does not properly restrict access to confidential bugs, which could allow Bugzi
Bugzilla before 2.14 does not properly restrict access to confidential bugs, which could allow Bugzilla users to bypass viewing permissions via modified bug id parameters in (1) process_bug.cgi, (2) show_activity.cgi, (3) showvotes.cgi, (4) showdependencytree.cgi, (5) showdependencygraph.cgi, (6) showattachment.cgi, or (7) describecomponents.cgi.
nvd
CVE-2005-4534P4HIGHCVSS 7.5v2.9v2.10+18 more2005-12-28
CVE-2005-4534 [HIGH] CVE-2005-4534: The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to ove
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
nvd
CVE-2011-2380P4MEDIUMCVSS 5.0v2.22.7v2.23+68 more2011-08-09
CVE-2011-2380 [MEDIUM] CWE-200 CVE-2011-2380: Bugzilla 2.23.3 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.4.12, 3.5.x, 3.6.x before 3.6.6,
Bugzilla 2.23.3 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.4.12, 3.5.x, 3.6.x before 3.6.6, 3.7.x, 4.0.x before 4.0.2, and 4.1.x before 4.1.3 allows remote attackers to determine the existence of private group names via a crafted parameter during (1) bug creation or (2) bug editing.
nvd
CVE-2009-3386P4MEDIUMCVSS 5.0v3.3.2v3.3.3+7 more2009-11-20
CVE-2009-3386 [MEDIUM] CWE-200 CVE-2009-3386: Template.pm in Bugzilla 3.3.2 through 3.4.3 and 3.5 through 3.5.1 allows remote attackers to discove
Template.pm in Bugzilla 3.3.2 through 3.4.3 and 3.5 through 3.5.1 allows remote attackers to discover the alias of a private bug by reading the (1) Depends On or (2) Blocks field of a related bug.
nvd
CVE-2003-1044P4HIGHCVSS 7.5v2.4v2.6+16 more2004-08-18
CVE-2003-1044 [HIGH] CVE-2003-1044: editproducts.cgi in Bugzilla 2.16.3 and earlier, when usebuggroups is enabled, does not properly rem
editproducts.cgi in Bugzilla 2.16.3 and earlier, when usebuggroups is enabled, does not properly remove group add privileges from a group that is being deleted, which allows users with those privileges to perform unauthorized additions to the next group that is assigned with the original group ID.
nvd
CVE-2016-2803P4MEDIUMCVSS 6.1v2.2v2.4+200 more2017-04-12
CVE-2016-2803 [MEDIUM] CWE-79 CVE-2016-2803: Cross-site scripting (XSS) vulnerability in the dependency graphs in Bugzilla 2.16rc1 through 4.4.11
Cross-site scripting (XSS) vulnerability in the dependency graphs in Bugzilla 2.16rc1 through 4.4.11, and 4.5.1 through 5.0.2 allows remote attackers to inject arbitrary web script or HTML.
nvd
CVE-2002-0008P4HIGHCVSS 7.5≤ 2.14.12002-01-31
CVE-2002-0008 [HIGH] CVE-2002-0008: Bugzilla before 2.14.1 allows remote attackers to (1) spoof a user comment via an HTTP request to pr
Bugzilla before 2.14.1 allows remote attackers to (1) spoof a user comment via an HTTP request to process_bug.cgi using the "who" parameter, instead of the Bugzilla_login cookie, or (2) post a bug as another user by modifying the reporter parameter to enter_bug.cgi, which is passed to post_bug.cgi.
nvd
CVE-2011-2978P4MEDIUMCVSS 5.0v2.16v2.16.1+113 more2011-08-09
CVE-2011-2978 [MEDIUM] CWE-20 CVE-2011-2978: Bugzilla 2.16rc1 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.4.12, 3.5.x, 3.6.x before 3.6.6
Bugzilla 2.16rc1 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.4.12, 3.5.x, 3.6.x before 3.6.6, 3.7.x, 4.0.x before 4.0.2, and 4.1.x before 4.1.3 does not prevent changes to the confirmation e-mail address (aka old_email field) for e-mail change notifications, which makes it easier for remote attackers to perform arbitrary address changes by leve
nvd
CVE-2006-0916P4HIGHCVSS 7.5v2.19.3v2.20+3 more2006-02-28
CVE-2006-0916 [HIGH] CVE-2006-0916: Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user
Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user from the login form, which could cause it to generate a partial URL in a form action that causes the user's browser to send the form data to another domain.
nvd
CVE-2011-2381P4MEDIUMCVSS 4.3v2.17.1v2.17.3+100 more2011-08-09
CVE-2011-2381 [MEDIUM] CWE-94 CVE-2011-2381: CRLF injection vulnerability in Bugzilla 2.17.1 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.
CRLF injection vulnerability in Bugzilla 2.17.1 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.4.12, 3.5.x, 3.6.x before 3.6.6, 3.7.x, 4.0.x before 4.0.2, and 4.1.x before 4.1.3 allows remote attackers to inject arbitrary e-mail headers via an attachment description in a flagmail notification.
nvd
CVE-2012-0465P4MEDIUMCVSS 4.3v3.5.1v3.5.2+22 more2012-04-27
CVE-2012-0465 [MEDIUM] CWE-264 CVE-2012-0465: Bugzilla 3.5.x and 3.6.x before 3.6.9, 3.7.x and 4.0.x before 4.0.6, and 4.1.x and 4.2.x before 4.2.
Bugzilla 3.5.x and 3.6.x before 3.6.9, 3.7.x and 4.0.x before 4.0.6, and 4.1.x and 4.2.x before 4.2.1, when the inbound_proxies option is enabled, does not properly validate the X-Forwarded-For HTTP header, which allows remote attackers to bypass the lockout policy via a series of authentication requests with (1) different IP address strings in this h
nvd
CVE-2012-3981P4MEDIUMCVSS 5.0v2.0v2.2+150 more2012-09-04
CVE-2012-3981 [MEDIUM] CWE-255 CVE-2012-3981: Auth/Verify/LDAP.pm in Bugzilla 2.x and 3.x before 3.6.11, 3.7.x and 4.0.x before 4.0.8, 4.1.x and 4
Auth/Verify/LDAP.pm in Bugzilla 2.x and 3.x before 3.6.11, 3.7.x and 4.0.x before 4.0.8, 4.1.x and 4.2.x before 4.2.3, and 4.3.x before 4.3.3 does not restrict the characters in a username, which might allow remote attackers to inject data into an LDAP directory via a crafted login attempt.
nvd
CVE-2001-1407P4HIGHCVSS 7.5v2.4v2.6+4 more2001-09-10
CVE-2001-1407 [HIGH] CVE-2001-1407: Bugzilla before 2.14 allows Bugzilla users to bypass group security checks by marking a bug as the d
Bugzilla before 2.14 allows Bugzilla users to bypass group security checks by marking a bug as the duplicate of a restricted bug, which adds the user to the CC list of the restricted bug and allows the user to view the bug.
nvd
CVE-2010-4572P4MEDIUMCVSS 4.3≤ 3.2.9v2.0+96 more2011-01-28
CVE-2010-4572 [MEDIUM] CVE-2010-4572: CRLF injection vulnerability in chart.cgi in Bugzilla before 3.2.10, 3.4.x before 3.4.10, 3.6.x befo
CRLF injection vulnerability in chart.cgi in Bugzilla before 3.2.10, 3.4.x before 3.4.10, 3.6.x before 3.6.4, and 4.0.x before 4.0rc2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the query string, a different vulnerability than CVE-2010-2761 and CVE-2010-4411.
nvd
CVE-2006-5454P4MEDIUMCVSS 5.0v2.18v2.18.1+11 more2006-10-23
CVE-2006-5454 [MEDIUM] CVE-2006-5454: Bugzilla 2.18.x before 2.18.6, 2.20.x before 2.20.3, 2.22.x before 2.22.1, and 2.23.x before 2.23.3
Bugzilla 2.18.x before 2.18.6, 2.20.x before 2.20.3, 2.22.x before 2.22.1, and 2.23.x before 2.23.3 allow remote attackers to obtain (1) the description of arbitrary attachments by viewing the attachment in "diff" mode in attachment.cgi, and (2) the deadline field by viewing the XML format of the bug in show_bug.cgi.
nvd