CVE-2003-1043

Publication date

2004-06-03 04:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in Bugzilla 2.16.3 and earlier, and 2.17.1 through 2.17.4, allows remote authenticated users with editkeywords privileges to execute arbitrary SQL via the id parameter to editkeywords.cgi.