CVE-2006-0915
Publication date 28 February 2006
Last updated 17 July 2025
Ubuntu priority
Description
Bugzilla 2.16.10 does not properly handle certain characters in the (1) maxpatchsize and (2) maxattachmentsize parameters in attachment.cgi, which allows remote attackers to trigger a SQL error.