Vulnerabilities > CVE-2001-0330 - Unspecified vulnerability in Mozilla Bugzilla
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Bugzilla 2.10 allows remote attackers to access sensitive information, including the database username and password, via an HTTP request for the globals.pl file, which is normally returned by the web server without being executed.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
References
- http://www.atstake.com/research/advisories/2001/a043001-1.txt
- http://www.atstake.com/research/advisories/2001/a043001-1.txt
- http://www.securityfocus.com/bid/2671
- http://www.securityfocus.com/bid/2671
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6489
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6489