Security Advisory
CVE-2001-0330
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Bugzilla 2.10 allows remote attackers to access sensitive information, including the database username and password, via an HTTP request for the globals.pl file, which is normally returned by the web server without being executed.