CVE-2006-0914
Publication date 28 February 2006
Last updated 17 July 2025
Ubuntu priority
Description
Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly handle certain characters in the mostfreqthreshold parameter in duplicates.cgi, which allows remote attackers to trigger a SQL error.