Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-26067

Опубликовано: 28 янв. 2021
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

Affected versions of Atlassian Bamboo allow an unauthenticated remote attacker to view a stack trace that may reveal the path for the home directory in disk and if certain files exists on the tmp directory, via a Sensitive Data Exposure vulnerability in the /chart endpoint. The affected versions are before version 7.2.2.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:atlassian:bamboo:*:*:*:*:*:*:*:*
Версия до 7.2.2 (исключая)

EPSS

Процентиль: 81%
0.01534
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

github
больше 3 лет назад

Affected versions of Atlassian Bamboo allow an unauthenticated remote attacker to view a stack trace that may reveal the path for the home directory in disk and if certain files exists on the tmp directory, via a Sensitive Data Exposure vulnerability in the /chart endpoint. The affected versions are before version 7.2.2.

EPSS

Процентиль: 81%
0.01534
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-200