Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-0803

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2002-0803
Last Modified 10 Sep 2008 03:12:55
Published 12 Aug 2002 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2002-0803

Summary

Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, allows remote attackers to display restricted products and components via a direct HTTP request to queryhelp.cgi.

Vulnerable Systems

Application

  • Mozilla Bugzilla 2.14

  • Mozilla Bugzilla 2.14.1

  • Mozilla Bugzilla 2.16


References

BUGTRAQ - 20020608 [BUGZILLA] Security Advisory For Versions of Bugzilla 2.14 Prior To 2.14.2, 2.16 Prior To 2.16rc2

XF - bugzilla-queryhelp-obtain-information(9300)

CONFIRM - http://bugzilla.mozilla.org/show_bug.cgi?id=126801

FREEBSD - FreeBSD-SN-02:05

BID - 4964

MISC - ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02%3A05.asc


Last Updated: 27 May 2016 10:37:04