AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2012-1969

MEDIUM · CVSS 4.3 EPSS 1.55%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-07-30 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2012-1969
Severity
MEDIUM
CVSS
4.3
EPSS
1.55%

Original NVD Description

The get_attachment_link function in Template.pm in Bugzilla 2.x and 3.x before 3.6.10, 3.7.x and 4.0.x before 4.0.7, 4.1.x and 4.2.x before 4.2.2, and 4.3.x before 4.3.2 does not check whether an attachment is private before presenting the attachment description within a public comment, which allows remote attackers to obtain sensitive description information by reading a comment.