CVE Vulnerabilities

CVE-2014-1572

Published: Oct 13, 2014 | Modified: Nov 28, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The confirm_create_account function in the account-creation feature in token.cgi in Bugzilla 2.x through 4.0.x before 4.0.15, 4.1.x and 4.2.x before 4.2.11, 4.3.x and 4.4.x before 4.4.6, and 4.5.x before 4.5.6 does not specify a scalar context for the realname parameter, which allows remote attackers to create accounts with unverified e-mail addresses by sending three realname values with realname=login_name as the second, as demonstrated by selecting an e-mail address with a domain name for which group privileges are automatically granted.

Affected Software

Name Vendor Start Version End Version
Fedora Fedoraproject 19 (including) 19 (including)
Fedora Fedoraproject 20 (including) 20 (including)
Fedora Fedoraproject 21 (including) 21 (including)
Bugzilla Ubuntu lucid *

References