CVE Published: 24/08/2017 |
CVE Updated: 16/10/2024 |
CVE Year: 2017 Source: atlassian |
Vendor: Atlassian |
Product: Atlassian Fisheye and Crucible Status : PUBLISHED
CVE-2017-9512 Description
The mostActiveCommitters.do resource in Atlassian Fisheye and Crucible, before version 4.4.1 allows anonymous remote attackers to access sensitive information, for example email addresses of committers, as it lacked permission checks.