CVE-2012-5884

Currently unrated

Key Information:

Vendor
Mozilla
Status
Vendor
CVE Published:
16 November 2012

Summary

The User.get method in Bugzilla/WebService/User.pm in Bugzilla 4.3.2 allows remote attackers to obtain sensitive information about the saved searches of arbitrary users via an XMLRPC request or a JSONRPC request, a different vulnerability than CVE-2012-4198.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.