### [CVE-2010-4569](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4569) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Cross-site scripting (XSS) vulnerability in Bugzilla 3.7.1, 3.7.2, 3.7.3, and 4.0rc1 allows remote attackers to inject arbitrary web script or HTML via the real name field of a user account, related to the AutoComplete widget in YUI. ### POC #### Reference - http://www.bugzilla.org/security/3.2.9/ #### Github No PoCs found on GitHub currently.