Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2011-2381
Description:CRLF injection vulnerability in Bugzilla 2.17.1 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.4.12, 3.5.x, 3.6.x before 3.6.6, 3.7.x, 4.0.x before 4.0.2, and 4.1.x before 4.1.3 allows remote attackers to inject arbitrary e-mail headers via an attachment description in a flagmail notification.
Test IDs: 1.3.6.1.4.1.25623.1.0.70264   1.3.6.1.4.1.25623.1.0.70411  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2011-2381
BugTraq ID: 49042
http://www.securityfocus.com/bid/49042
Debian Security Information: DSA-2322 (Google Search)
http://www.debian.org/security/2011/dsa-2322
http://www.osvdb.org/74300
http://secunia.com/advisories/45501
XForce ISS Database: bugzilla-attachment-header-injection(69035)
https://exchange.xforce.ibmcloud.com/vulnerabilities/69035




© 1998-2025 E-Soft Inc. All rights reserved.