Bugzilla '--attach_path' Directory Traversal Vulnerability

Bugtraq ID: 30661
Class: Input Validation Error
CVE: CVE-2008-4437
Remote: Yes
Local: No
Published: Aug 12 2008 12:00AM
Updated: Apr 13 2015 10:25PM
Credit: ilja
Vulnerable: Mozilla Bugzilla 3.1.4
Mozilla Bugzilla 3.1.3
Mozilla Bugzilla 3.1.2
Mozilla Bugzilla 3.1.1
Mozilla Bugzilla 3.1
Mozilla Bugzilla 3.0.4
Mozilla Bugzilla 3.0.2
Mozilla Bugzilla 3.0.1
Mozilla Bugzilla 3.0
Mozilla Bugzilla 2.23.4
Mozilla Bugzilla 2.23.3
Mozilla Bugzilla 2.23.2
Mozilla Bugzilla 2.22.4
Mozilla Bugzilla 2.22.3
Mozilla Bugzilla 2.22.2
Mozilla Bugzilla 2.22.1
Mozilla Bugzilla 2.22 RC1
Mozilla Bugzilla 2.22
Gentoo Linux
Not Vulnerable: Mozilla Bugzilla 3.0.5
Mozilla Bugzilla 2.22.5
Mozilla Bugzilla 3.2rc1


 

Privacy Statement
Copyright 2010, SecurityFocus