First published: Thu Aug 24 2017(Updated: )
The MultiPathResource class in Atlassian Fisheye and Crucible, before version 4.4.1 allows anonymous remote attackers to read arbitrary files via a path traversal vulnerability when Fisheye or Crucible is running on the Microsoft Windows operating system.
Credit: security@atlassian.com security@atlassian.com
Affected Software | Affected Version | How to fix |
---|---|---|
Atlassian Crucible | <=4.4.0 | |
Atlassian FishEye | <=4.4.0 | |
Microsoft Windows | ||
All of | ||
Any of | ||
Atlassian Crucible | <=4.4.0 | |
Atlassian FishEye | <=4.4.0 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.