CVE-2001-1406
LOW—CVSS v3
2.1CVSS v2
0.21%
EPSS (exploit probability)
—CWE
Description
process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved between product groups, which will cause the bug to have the old group's restrictions, which might not be as stringent.
Affected routers (0)
No routers currently mapped to this CVE in our database.