PT-2006-6173 · Mozilla · Bugzilla

Dave Miller

+1

·

Published

2006-10-23

·

Updated

2018-10-17

·

CVE-2006-5455

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Bugzilla versions prior to 2.22.1 Bugzilla versions 2.23.x prior to 2.23.3
Description A cross-site request forgery (CSRF) issue exists, allowing user-assisted remote attackers to create, modify, or delete arbitrary bug reports via a crafted URL.
Recommendations For versions prior to 2.22.1, update to version 2.22.1 or later. For versions 2.23.x prior to 2.23.3, update to version 2.23.3 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-5455

Affected Products

Bugzilla