Arbitrary Code Execution via Image Upload in Atlassian Hipchat Server

Arbitrary Code Execution via Image Upload in Atlassian Hipchat Server

CVE-2017-8080 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:P/A:P

Atlassian Hipchat Server before 2.2.4 allows remote authenticated users with user level privileges to execute arbitrary code via vectors involving image uploads.

Learn more about our Cis Benchmark Audit For Server Software.