The confirm_create_account function in the account-creation feature in token.cgi in Bugzilla 2.x through 4.0.x before 4.0.15, 4.1.x and 4.2.x before 4.2.11, 4.3.x and 4.4.x before 4.4.6, and 4.5.x before 4.5.6 does not specify a scalar context for the realname parameter, which allows remote attackers to create accounts with unverified e-mail addresses by sending three realname values with realname=login_name as the second, as demonstrated by selecting an e-mail address with a domain name for which group privileges are automatically granted.
No CVSS v3.1
No CVSS v3.0
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact Partial
Availability Impact None
AV:N/AC:L/Au:N/C:N/I:P/A:N
Vendors | Products |
---|---|
Mozilla |
|
Fedoraproject |
|
Configuration 1 [-]
|
Configuration 2 [-]
|
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mozilla
Published: 2014-10-13T01:00:00
Updated: 2016-11-25T20:57:01
Reserved: 2014-01-16T00:00:00
Link: CVE-2014-1572
JSON object: View
NVD Information
Status : Modified
Published: 2014-10-13T01:55:06.933
Modified: 2016-11-28T19:10:47.787
Link: CVE-2014-1572
JSON object: View
Redhat Information
No data.
CWE