First published: Mon Oct 23 2006(Updated: )
Cross-site request forgery (CSRF) vulnerability in editversions.cgi in Bugzilla before 2.22.1 and 2.23.x before 2.23.3 allows user-assisted remote attackers to create, modify, or delete arbitrary bug reports via a crafted URL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Bugzilla | <=2.22.1 | |
Mozilla Bugzilla | =2.23.2 | |
Mozilla Bugzilla | =2.23.1 | |
Mozilla Bugzilla | =2.23 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.