CVE-2018-13399
CVE-2018-13399
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
16 Oct 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
The Microsoft Windows Installer for Atlassian Fisheye and Crucible before version 4.6.1 allows local attackers to escalate privileges because of weak permissions on the installation directory.
Affected products
Atlassian · Fisheye and CrucibleWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →