BugZilla UserPrefs.CGI Groupset Form...

- AV AC AU C I A
发布: 2001-11-07
修订: 2025-04-13

Bugzilla is the bug tracking software package by the Mozilla project. It can be configured to run on Microsoft Windows and various Unix/Linux platforms. It is possible for a user to change their groupset. The attacker may manipulate form elements to supply their own value for the 'mybugslink' variable in the userprefs form. This issue may allow a malicious user to view bug information in other groups.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息