bugzilla_email_append.pl in Bugzilla 2.14.x prior to 2.14.4, and 2.16.x prior to 2.16.1, allows remote malicious users to execute arbitrary code via shell metacharacters in a system call to processmail.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mozilla bugzilla 2.14 |
||
mozilla bugzilla 2.14.1 |
||
mozilla bugzilla 2.14.2 |
||
mozilla bugzilla 2.14.3 |
||
mozilla bugzilla 2.16 |