CVE Database
/

CVE-2020-29446

Back to search

CVE-2020-29446

Published: Jan 18, 2021

Modified: Sep 17, 2024

PUBLISHED

Description

Affected versions of Atlassian Fisheye & Crucible allow remote attackers to browse local files via an Insecure Direct Object References (IDOR) vulnerability in the WEB-INF directory. The affected versions are before version 4.8.5.

VendorProductVersions

Atlassian

Fisheye

affected
unspecified - < 4.8.5

Atlassian

Crucible

affected
unspecified - < 4.8.5

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now