Path Traversal Vulnerability in Atlassian Bitbucket Server Allows Arbitrary File Reading

Path Traversal Vulnerability in Atlassian Bitbucket Server Allows Arbitrary File Reading

CVE-2017-18038 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

The repository settings resource in Atlassian Bitbucket Server before version 5.6.0 allows remote attackers to read the first line of arbitrary files via a path traversal vulnerability through the default branch name.

Learn more about our Cis Benchmark Audit For Server Software.