CVE Published: 02/02/2018 |
CVE Updated: 17/09/2024 |
CVE Year: 2017 Source: atlassian |
Vendor: Atlassian |
Product: Bitbucket Server Status : PUBLISHED
CVE-2017-18038 Description
The repository settings resource in Atlassian Bitbucket Server before version 5.6.0 allows remote attackers to read the first line of arbitrary files via a path traversal vulnerability through the default branch name.