Bugzilla是美国Mozilla基金会开发的一套开源的缺陷跟踪系统,它可管理软件开发中缺陷的提交(new)、修复(resolve)、关闭(close)等整个生命周期。 Bugzilla 2.4至2.22.7,3.0.x至3.3.x,3.4.12之前的3.4.x版本,3.5.x,3.6.6之前的3.6.x版本,3.7.x,4.0.2之前的4.0.x版本,以及4.1.3之前的4.1.x版本中存在跨站脚本攻击漏洞。为防止跨站脚本攻击,在查看原始格式的附件时,Bugzilla使用交替宿主。在“Raw Unif
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-7294 | Google Chrome Cookie修改漏洞 | |
| CVE-2011-2979 | Mozilla Bugzilla恶意代码执行漏洞 | |
| CVE-2011-2978 | Mozilla Bugzilla邮件更改通知恶意代码执行漏洞 | |
| CVE-2011-2977 | Mozilla Bugzilla越权访问漏洞 | |
| CVE-2011-2976 | Mozilla Bugzilla跨站脚本攻击漏洞 | |
| CVE-2011-2381 | Mozilla Bugzilla CRLF注入漏洞 | |
| CVE-2011-2380 | Mozilla Bugzilla恶意代码执行漏洞 | |
| CVE-2008-7298 | Android浏览器Cookie修改漏洞 | |
| CVE-2008-7297 | Opera Cookie修改漏洞 | |
| CVE-2008-7296 | Apple Safari Cookie修改漏洞 | |
| CVE-2008-7295 | Microsoft Internet Explorer Cookie修改漏洞 | |
| CVE-2011-2221 | Novell Data Synchronizer Mobility Pack权限许可和访问控制漏洞 | |
| CVE-2008-7293 | Mozilla Firefox Cookie修改漏洞 | |
| CVE-2008-7292 | Mozilla Bugzilla敏感信息泄露漏洞 | |
| CVE-2011-3012 | ioQuake3引擎远程代码执行漏洞 | |
| CVE-2011-3014 | Novell Data Synchronizer Mobility Pack敏感信息泄露漏洞 | |
| CVE-2011-3013 | Novell Data Synchronizer Mobility Pack WebAdmin加密问题漏洞 | |
| CVE-2011-2590 | UUSee UUPlayer ActiveX控件'Play()'方法输入验证漏洞 | |
| CVE-2011-2589 | UUSee UUPlayer ActiveX控件'SendLogAction()'方法远程代码执行漏洞 | |
| CVE-2011-2224 | Novell Data Synchronizer Mobility Pack跨站脚本攻击漏洞 |
Showing top 20 of 23 CVEs. View all on vendor page → →
No comments yet