mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-08-04 08:44:25 +00:00
100 lines
4.3 KiB
JSON
100 lines
4.3 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "security@atlassian.com",
|
|
"DATE_PUBLIC": "2019-05-22T10:00:00",
|
|
"ID": "CVE-2019-3397",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"vendor_name": "Atlassian",
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "Bitbucket Data Center",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "5.13.0",
|
|
"version_affected": ">="
|
|
},
|
|
{
|
|
"version_value": "5.13.6",
|
|
"version_affected": "<"
|
|
},
|
|
{
|
|
"version_value": "5.14.0",
|
|
"version_affected": ">="
|
|
},
|
|
{
|
|
"version_value": "5.14.4",
|
|
"version_affected": "<"
|
|
},
|
|
{
|
|
"version_value": "5.15.0",
|
|
"version_affected": ">="
|
|
},
|
|
{
|
|
"version_value": "5.15.3",
|
|
"version_affected": "<"
|
|
},
|
|
{
|
|
"version_value": "6.0.0",
|
|
"version_affected": ">="
|
|
},
|
|
{
|
|
"version_value": "6.0.3",
|
|
"version_affected": "<"
|
|
},
|
|
{
|
|
"version_value": "6.1.0",
|
|
"version_affected": ">="
|
|
},
|
|
{
|
|
"version_value": "6.1.2",
|
|
"version_affected": "<"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Atlassian Bitbucket Data Center licensed instances starting with version 5.13.0 before 5.13.6 (the fixed version for 5.13.x), from 5.14.0 before 5.14.4 (fixed version for 5.14.x), from 5.15.0 before 5.15.3 (fixed version for 5.15.x), from 5.16.0 before 5.16.3 (fixed version for 5.16.x), from 6.0.0 before 6.0.3 (fixed version for 6.0.x), and from 6.1.0 before 6.1.2 (the fixed version for 6.1.x) allow remote attackers who have admin permissions to achieve remote code execution on a Bitbucket server instance via path traversal through the Data Center migration tool."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Path Traversal"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"url": "https://jira.atlassian.com/browse/BSERV-11706",
|
|
"refsource": "MISC",
|
|
"name": "https://jira.atlassian.com/browse/BSERV-11706"
|
|
}
|
|
]
|
|
}
|
|
} |