-
Public Security Vulnerability
-
Resolution: Fixed
-
Low
-
4.8.0
-
None
-
5.7
-
Medium
-
CVE-2021-43955
The /rest-service-fecru/server-v1 resource in Fisheye and Crucible before version 4.8.9 allowed authenticated remote attackers to obtain information about installation directories via information disclosure vulnerability.
Affected versions:
- version < 4.8.9
Fixed versions:
- 4.8.9
- is related to
-
CRUC-8533 CVE-2021-43955: /rest-service-fecru/server-v1 leaks information about installation directories
-
- Published
-
This is an independent assessment and you should evaluate its applicability to your own IT environment.
CVSS v3 score: 5.7 => Medium severity
Exploitability Metrics
Scope Metric
Impact Metrics
https://asecurityteam.bitbucket.io/cvss_v3/#CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N