CVE-2022-43781

CVE-2022-43781

There is a command injection vulnerability using environment variables in Bitbucket Server and Data Center. An attacker with permission to control their username can exploit this issue to execute arbitrary code on the system. This vulnerability can be unauthenticated if the Bitbucket Server and Data Center instance has enabled “Allow public signup�.

Source: CVE-2022-43781

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다