SQL injection vulnerability in the Bug.create WebService function in Bugzilla 2.23.4 up to and including 3.0.8, 3.1.1 up to and including 3.2.4, and 3.3.1 up to and including 3.4.1 allows remote malicious users to execute arbitrary SQL commands via unspecified parameters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mozilla bugzilla 3.0 |
||
mozilla bugzilla 3.0.7 |
||
mozilla bugzilla 3.0.8 |
||
mozilla bugzilla 3.1.1 |
||
mozilla bugzilla 3.1.2 |
||
mozilla bugzilla 3.3.4 |
||
mozilla bugzilla 3.4 |
||
mozilla bugzilla 3.4.1 |
||
mozilla bugzilla 3.0.5 |
||
mozilla bugzilla 3.0.2 |
||
mozilla bugzilla 3.1.3 |
||
mozilla bugzilla 3.2 |
||
mozilla bugzilla 3.3.1 |
||
mozilla bugzilla 3.3.3 |
||
mozilla bugzilla 2.23.4 |
||
mozilla bugzilla 3.0.4 |
||
mozilla bugzilla 3.0.6 |
||
mozilla bugzilla 3.0.3 |
||
mozilla bugzilla 3.2.4 |
||
mozilla bugzilla 3.2.1 |
||
mozilla bugzilla 3.2.3 |
||
mozilla bugzilla 3.0.1 |
||
mozilla bugzilla 3.1.4 |
||
mozilla bugzilla 3.2.2 |
||
mozilla bugzilla 3.3.2 |