CVE-2009-3165 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in the Bug.create WebService function in Bugzilla 2.23.4 through 3.0.8 3.1.1 through 3.2.4 and 3.3.1 through 3.4.1 allows remote attackers to execute arbitrary SQL commands via unspecified parameters.
Reference
http://secunia.com/advisories/36718 http://www.bugzilla.org/security/3.0.8/ http://www.securityfocus.com/bid/36373 https://bugzilla.mozilla.org/show_bug.cgi?id=515191
Share on: