CVE-2005-1564
Publication date 12 May 2005
Last updated 17 July 2025
Ubuntu priority
Description
post_bug.cgi in Bugzilla 2.10 through 2.18, 2.19.1, and 2.19.2 allows remote authenticated users to "enter bugs into products that are closed for bug entry" by modifying the URL to specify the name of the product.