CVE
- Id
- 7866
- CVE No.
- CVE-2003-1042
- Status
- Candidate
- Description
- SQL injection vulnerability in collectstats.pl for Bugzilla 2.16.3 and earlier allows remote authenticated users with editproducts privileges to execute arbitrary SQL via the product name.
- Phase
- Assigned (20040527)
- Votes
- None (candidate not yet proposed)
- Comments