5
CVSSv2

CVE-2002-0810

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Bugzilla 2.14 prior to 2.14.2, and 2.16 prior to 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla bugzilla 2.14

mozilla bugzilla 2.14.1

mozilla bugzilla 2.16