cvelist/2006/0xxx/CVE-2006-0913.json

92 lines
3.0 KiB
JSON
Raw Normal View History

2017-10-16 12:31:07 -04:00
{
2019-03-17 23:53:09 +00:00
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2006-0913",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
2017-10-16 12:31:07 -04:00
{
2019-03-17 23:53:09 +00:00
"lang": "eng",
"value": "SQL injection vulnerability in whineatnews.pl in Bugzilla 2.17 through 2.18.4 and 2.20 allows remote authenticated users with administrative privileges to execute arbitrary SQL commands via the whinedays parameter, as accessible from editparams.cgi."
2017-10-16 12:31:07 -04:00
}
2019-03-17 23:53:09 +00:00
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "bugzilla-editparams-sql-injection(24819)",
"refsource": "XF",
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/24819"
},
{
"name": "18979",
"refsource": "SECUNIA",
"url": "http://secunia.com/advisories/18979"
},
{
"name": "ADV-2006-0692",
"refsource": "VUPEN",
"url": "http://www.vupen.com/english/advisories/2006/0692"
},
{
"name": "https://bugzilla.mozilla.org/show_bug.cgi?id=312498",
"refsource": "CONFIRM",
"url": "https://bugzilla.mozilla.org/show_bug.cgi?id=312498"
},
{
"name": "20060221 [BUGZILLA] Security Advisory for Bugzilla 2.20, 2.21.1, and 2.18.4",
"refsource": "BUGTRAQ",
"url": "http://www.securityfocus.com/archive/1/425584/100/0/threaded"
},
{
"name": "16738",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/16738"
},
{
"name": "23378",
"refsource": "OSVDB",
"url": "http://www.osvdb.org/23378"
}
]
}
}