CVE-2021-31863
28.04.2021, 07:15
Insufficient input validation in the Git repository integration of Redmine before 4.0.9, 4.1.x before 4.1.3, and 4.2.x before 4.2.1 allows Redmine users to read arbitrary local files accessible by the application server process.Enginsight
Vendor | Product | Version |
---|---|---|
redmine | redmine | 𝑥 < 4.0.9 |
redmine | redmine | 4.1.0 ≤ 𝑥 < 4.1.3 |
redmine | redmine | 4.2.0 ≤ 𝑥 < 4.2.1 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References