Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Bugzilla 2.17.1 through 2.18, 2.19.1, and 2.19.2, when a user is prompted to log in while attempting to view a chart, displays the password in the URL, which may allow local users to gain sensitive information from web logs or browser history.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bugzilla认证信息泄露漏洞
Vulnerability Description
Bugzilla是很多软件项目都在使用的基于Web的漏洞跟踪系统。 Bugzilla对于客户端与服务器交互数据的处理上存在问题,本地攻击者可能利用此漏洞获取其他用户的认证信息。
CVSS Information
N/A
Vulnerability Type
N/A