CVE-2002-1198

Publication date

2004-09-01 04:00:00

Family

mitre

State

PUBLISHED

Description

Bugzilla 2.16.x before 2.16.1 does not properly filter apostrophes from an email address during account creation, which allows remote attackers to execute arbitrary SQL via a SQL injection attack.