Cross-Site Scripting Vulnerability in Bugzilla by Mozilla
CVE-2012-4189

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
16 November 2012

What is CVE-2012-4189?

A Cross-Site Scripting (XSS) vulnerability exists in Bugzilla, which allows remote attackers to inject arbitrary web scripts or HTML. This occurs through improper handling of input when generating tabular reports, specifically affecting the Version field. Exploiting this vulnerability could allow attackers to execute malicious scripts in the context of the user's browser.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.