Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-1061
Description:Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.
Test IDs: 1.3.6.1.4.1.25623.1.0.51276   1.3.6.1.4.1.25623.1.0.52209  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-1061
BugTraq ID: 12154
http://www.securityfocus.com/bid/12154
Conectiva Linux advisory: CLSA-2005:1040
http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=001040
http://lists.grok.org.uk/pipermail/full-disclosure/2004-December/030222.html
http://www.mikx.de/index.php?p=6
XForce ISS Database: bugzilla-xss(18728)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18728




© 1998-2025 E-Soft Inc. All rights reserved.