2.1
CVSSv2

CVE-2011-2977

Published: 09/08/2011 Updated: 29/08/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Bugzilla 3.6.x prior to 3.6.6, 3.7.x, 4.0.x prior to 4.0.2, and 4.1.x prior to 4.1.3 on Windows does not delete the temporary files associated with uploaded attachments, which allows local users to obtain sensitive information by reading these files. NOTE: this issue exists because of a regression in 3.6.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla bugzilla 3.6.1

mozilla bugzilla 3.6.0

mozilla bugzilla 3.7.2

mozilla bugzilla 3.7

mozilla bugzilla 4.1

mozilla bugzilla 3.7.3

mozilla bugzilla 3.7.1

mozilla bugzilla 4.1.1

mozilla bugzilla 4.1.2

mozilla bugzilla 3.6.4

mozilla bugzilla 3.6.5

mozilla bugzilla 4.0.1

mozilla bugzilla 4.0

mozilla bugzilla 3.6.3

mozilla bugzilla 3.6.2