CVE-2017-18080: CSRF
Published Feb 2, 2018
·Updated
The saveConfigureSecurity resource in Atlassian Bamboo before version 6.3.1 allows remote attackers to modify security settings via a Cross-site request forgery (CSRF) vulnerability.
Affected Software
1 affected component
Atlassian Bamboo<6.3.1
Event History
Feb 2, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2017-18080.
2
What is the severity of CVE-2017-18080?
The severity of CVE-2017-18080 is high with a severity value of 8.8.
3
How does CVE-2017-18080 affect Atlassian Bamboo?
CVE-2017-18080 affects Atlassian Bamboo before version 6.3.1.
4
What is the impact of CVE-2017-18080?
CVE-2017-18080 allows remote attackers to modify security settings via a Cross-site request forgery (CSRF) vulnerability.
5
How can I fix CVE-2017-18080?
To fix CVE-2017-18080, upgrade to Atlassian Bamboo version 6.3.1 or later.