OSVDB ID: 29548

Title: Bugzilla Crafted URL User-complicit Arbitrary Command Execution

Info

Disclosure

Oct 15, 2006

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

Bugzilla contains a flaw related to the sanitization of input in multiple instances. A specially crafted URL could lead to user-complicit arbitrary command execution. This may allow an attacker to conduct cross-site scripting, script insertion, request forgery attacks as well as disclose potentially sensitive information.

Classification

Location: Remote / Network Access
Attack Type: Input Manipulation
Impact: Loss of Integrity
Exploit: Exploit Unknown
Disclosure: OSVDB Verified, Vendor Verified
OSVDB: Web Related

Solution

Upgrade to version 2.18.6, 2.20.3, 2.22.1, or 2.23.3 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Products

Mozilla Organization

Bugzilla

2.18.5
2.20.2
2.22
2.23.2

References

Credit

  • Frédéric Buclin -
  • Gervase Markham -
  • Josh "timeless" Soref -
  • Gavin Shelley -
  • Max Kanat-Alexander - mkantatbugzilla.org -


Direct URL: http://osvdb.org/29548