Lucene search

K
cvelistAtlassianCVELIST:CVE-2017-18036
HistoryFeb 02, 2017 - 12:00 a.m.

CVE-2017-18036

2017-02-0200:00:00
CWE-918
atlassian
www.cve.org
1

4.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

34.9%

The Github repository importer in Atlassian Bitbucket Server before version 5.3.0 allows remote attackers to determine if a service they could not otherwise reach has open ports via a Server Side Request Forgery (SSRF) vulnerability.

CNA Affected

[
  {
    "product": "Bitbucket Server",
    "vendor": "Atlassian",
    "versions": [
      {
        "status": "affected",
        "version": "prior to 5.3.0"
      }
    ]
  }
]

4.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

34.9%

Related for CVELIST:CVE-2017-18036