Fisheye / Crucible Remote Code Execution

Discussion in 'News Aggregator' started by Packet Storm, 11 Feb 2018.

  1. Packet Storm

    Packet Storm Guest

    Fisheye and Crucible suffer from a remote code execution vulnerability through OGNL double evaluation. Versions of Fisheye and Crucible before 4.4.5 (the fixed version for 4.4.x) and from 4.5.0 before 4.5.2 (the fixed version for 4.5.x) are affected by this vulnerability.

    Continue reading...
     

Share This Page

Loading...