Atlassian SourceTree 2.5c Client URL Handler Command Injection

Discussion in 'News Aggregator' started by Packet Storm, 5 May 2017.

  1. Packet Storm

    Packet Storm Guest

    Atlassian SourceTree Client version 2.5c and prior contain a client URL handler command injection vulnerability that allows attackers to execute specially crafted sourcetree:// commands with arbitrary arguments on multiple platforms.

    Continue reading...
     

Share This Page

Loading...