CVE-2017-14591
29.11.2017, 21:29
Atlassian Fisheye and Crucible versions less than 4.4.3 and version 4.5.0 are vulnerable to argument injection through filenames in Mercurial repositories, allowing attackers to execute arbitrary code on a system running the impacted software.
| Vendor | Product | Version |
|---|---|---|
| atlassian | crucible | 𝑥 < 4.4.3 |
| atlassian | crucible | 4.5.0 |
| atlassian | fisheye | 𝑥 < 4.4.3 |
| atlassian | fisheye | 4.5.0 |
𝑥
= Vulnerable software versions