Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-8033 | The review attachment resource in Atlassian Fisheye and Crucible before version 4.3.2, from version 4.4.0 before 4.4.3 and before version 4.5.0 allows remote attackers to read files contained within context path of the running application through a path traversal vulnerability in the command parameter. |
No history.
Status: PUBLISHED
Assigner: atlassian
Published:
Updated: 2024-09-16T17:15:00.298Z
Reserved: 2017-11-16T00:00:00.000Z
Link: CVE-2017-16859
No data.
Status : Modified
Published: 2018-06-28T14:29:00.213
Modified: 2026-06-17T01:10:02.273
Link: CVE-2017-16859
No data.
OpenCVE Enrichment
No data.
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
EUVD