Page 4 of 16 results (0.000 seconds)

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 0

Atlassian Bitbucket Server before 4.7.1 allows remote attackers to read the first line of an arbitrary file via a directory traversal attack on the pull requests resource. Atlassian Bitbucket Server en versiones anteriores a 4.7.1 permite a atacantes remotos leer la primera línea de un archivo arbitrario a través de un ataque de salto de directorio en el recurso de solicitudes de extracción. • http://www.securityfocus.com/bid/97515 https://confluence.atlassian.com/bitbucketserver/bitbucket-server-4-7-release-notes-829052416.html https://jira.atlassian.com/browse/BSERV-8819 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •