CVE Vulnerabilities

CVE-2001-1405

Published: Sep 10, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Bugzilla before 2.14 does not restrict access to sanitycheck.cgi, which allows local users to cause a denial of service (CPU consumption) via a flood of requests to sanitycheck.cgi.

Affected Software

NameVendorStart VersionEnd Version
BugzillaMozilla2.4 (including)2.4 (including)
BugzillaMozilla2.6 (including)2.6 (including)
BugzillaMozilla2.8 (including)2.8 (including)
BugzillaMozilla2.10 (including)2.10 (including)
BugzillaMozilla2.12 (including)2.12 (including)
BugzillaMozilla2.14 (including)2.14 (including)
Red Hat Powertools 7.0RedHat*
Red Hat Powertools 7.1RedHat*

References