CVE-2001-1406

LOW
CVSS v3
2.1CVSS v2
0.21% EPSS (exploit probability)
CWE

Description

process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved between product groups, which will cause the bug to have the old group's restrictions, which might not be as stringent.

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references