Unrated severityNVD Advisory· Published Oct 28, 2002· Updated Jun 16, 2026
CVE-2002-1197
CVE-2002-1197
Description
bugzilla_email_append.pl in Bugzilla 2.14.x before 2.14.4, and 2.16.x before 2.16.1, allows remote attackers to execute arbitrary code via shell metacharacters in a system call to processmail.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:mozilla:bugzilla:2.14.1:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:mozilla:bugzilla:2.14.1:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:bugzilla:2.14.2:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:bugzilla:2.14.3:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:bugzilla:2.14:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:bugzilla:2.16:*:*:*:*:*:*:*
- (no CPE)range: >=2.14.0, <2.14.4; >=2.16.0, <2.16.1
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.