CVE-2018-13398
18.09.2018, 14:29
The administrative smart-commits resource in Atlassian Fisheye and Crucible before version 4.5.4 allows remote attackers to modify smart-commit settings via a Cross-site request forgery (CSRF) vulnerability.
Vendor | Product | Version |
---|---|---|
atlassian | crucible | 𝑥 < 4.5.4 |
atlassian | fisheye | 𝑥 < 4.5.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration