Beveiligingsadvies

CVE-2002-1198

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2004-09-01 04:00:00
Laatst bijgewerkt 2024-08-08 03:19:27
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Bugzilla 2.16.x before 2.16.1 does not properly filter apostrophes from an email address during account creation, which allows remote attackers to execute arbitrary SQL via a SQL injection attack.