This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:mozilla:bugzilla:2.16_rc2
Detail
VendorMozillaFirst view 2008-05-07
ProductBugzillaLast view 2012-01-02
Version2.16_rc2TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:mozilla:bugzilla

Activity : Yearly

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
6.82012-01-02CVE-2011-3669NetworkMediumNone Requ...
6.82012-01-02CVE-2011-3668NetworkMediumNone Requ...
4.32011-01-28CVE-2011-0048NetworkMediumNone Requ...
6.82011-01-28CVE-2011-0046NetworkMediumNone Requ...
4.32011-01-28CVE-2010-4572NetworkMediumNone Requ...
Hide | Show 7 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
4.32011-01-28CVE-2010-4567NetworkMediumNone Requ...
52010-11-05CVE-2010-3764NetworkLowNone Requ...
2.62010-11-05CVE-2010-3172NetworkHighNone Requ...
5.82009-02-09CVE-2009-0483NetworkMediumNone Requ...
5.82009-02-09CVE-2009-0482NetworkMediumNone Requ...
3.52009-02-09CVE-2009-0481NetworkMediumRequires ...
3.52008-05-07CVE-2008-2105NetworkMediumRequires ...

CWE : Common Weakness Enumeration

%idName
41% (5)CWE-352Cross-Site Request Forgery (CSRF)
25% (3)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
16% (2)CWE-94Failure to Control Generation of Code ('Code Injection')
8% (1)CWE-264Permissions, Privileges, and Access Controls
8% (1)CWE-200Information Exposure

Open Source Vulnerability Database (OSVDB)

idDescription
78059Bugzilla attachment.cgi Attachment Addition CSRF
78058Bugzilla post_bug.cgi Bug Report Creation CSRF
70710Bugzilla quips.cgi Quip Moderation CSRF
70709Bugzilla colchange.cgi Column Manipulation CSRF
70708Bugzilla chart.cgi Chart Manipulation CSRF
Hide | Show 13 More...
idDescription
70707Bugzilla sanitycheck.cgi Authentication Hijack CSRF
70706Bugzilla votes.cgi Authentication Hijack CSRF
70705Bugzilla buglist.cgi Saved Search Addition CSRF
70704Bugzilla Multiple URI Clickable Link bug_file_loc Field XSS
70703Bugzilla chart.cgi Query String HTTP Response Splitting CRLF Injection
70699Bugzilla Multiple URI Preceding Whitespace bug_file_loc Field XSS
69222Bugzilla Old Charts Predictable Graph Filenames Remote Information Disclosure
69221Bugzilla Server Push Crafted URL Response Splitting CRLF Injection
54054Bugzilla userprefs.cgi Keywords / User Preference Deletion CSRF
54053Bugzilla editkeywords.cgi Keywords / User Preference Deletion CSRF
54052Bugzilla process_bug.cgi Bug Update Activity CSRF
54051Bugzilla Uploaded Attachment Handling XSS
44939Bugzilla email_in.pl @reporter Command E-mail Address Spoofing Weakness