CVE-2017-18112

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
05/08/2020
Last modified:
11/08/2020

Description

Affected versions of Atlassian Fisheye allow remote attackers to view the HTTP password of a repository via an Information Disclosure vulnerability in the logging feature. The affected versions are before version 4.8.3.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:atlassian:fisheye:*:*:*:*:*:*:*:* 4.8.3 (excluding)


References to Advisories, Solutions, and Tools