Back to search
CVE-2005-1565
Published: May 14, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
Bugzilla 2.17.1 through 2.18, 2.19.1, and 2.19.2, when a user is prompted to log in while attempting to view a chart, displays the password in the URL, which may allow local users to gain sensitive information from web logs or browser history.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
CLSA-2005:1040
vendor-advisory
x_refsource_CONECTIVA
20050512 Security Advisory for Bugzilla 2.18, 2.19.2, and 2.16.8
mailing-list
x_refsource_BUGTRAQ
ADV-2005-0533
vdb-entry
x_refsource_VUPEN
https://bugzilla.mozilla.org/show_bug.cgi?id=287436
x_refsource_CONFIRM
15338
third-party-advisory
x_refsource_SECUNIA
16427
vdb-entry
x_refsource_OSVDB
13605
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now