ZeroHour

CVE-2017-18110

CVSS 3.0
6.5 medium
EPSS
1%p67
Published
()
Modified
Description

The administration backup restore resource in Atlassian Crowd before version 3.0.2 and from version 3.1.0 before version 3.1.1 allows remote attackers to read files from the filesystem via a XXE vulnerability.

Vendors
atlassian
Products
crowd
Weakness
CWE-611
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.