Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Search.pm in Bugzilla 2.17.1 through 3.2.6, 3.3.1 through 3.4.6, 3.5.1 through 3.6, and 3.7 allows remote attackers to obtain potentially sensitive time-tracking information via a crafted search URL, related to a "boolean chart search."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Bugzilla时间追踪功能信息泄露漏洞
Vulnerability Description
Bugzilla是很多软件项目都在使用的基于Web的BUG跟踪系统。 Bugzilla 2.17.1至3.2.6,3.3.1至3.4.6,3.5.1至3.6,以及3.7版本中的Search.pm存在信息泄露漏洞。远程攻击者可以借助制作的与"布尔图搜索"相关的URL来获取潜在的敏感时刻跟踪信息。
CVSS Information
N/A
Vulnerability Type
N/A