CVE-2018-20234
CVE-2018-20234
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 6.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
08 mar 2019Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
There was an argument injection vulnerability in Atlassian Sourcetree for macOS from version 1.2 before version 3.1.1 via filenames in Mercurial repositories. A remote attacker with permission to commit to a Mercurial repository linked in Sourcetree for macOS is able to exploit this issue to gain code execution on the system.
Productos afectados
Atlassian · Sourcetree for macOS¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →