CVE-2021-31863
28.04.2021, 07:15
Insufficient input validation in the Git repository integration of Redmine before 4.0.9, 4.1.x before 4.1.3, and 4.2.x before 4.2.1 allows Redmine users to read arbitrary local files accessible by the application server process.Enginsight
| Vendor | Product | Version |
|---|---|---|
| redmine | redmine | 𝑥 < 4.0.9 |
| redmine | redmine | 4.1.0 ≤ 𝑥 < 4.1.3 |
| redmine | redmine | 4.2.0 ≤ 𝑥 < 4.2.1 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References