CVE-2022-43781

Atlassian Bitbucket Server and Data Center Command Injection Vulnerability (CVE-2022-43781) Alert

November 23, 2022

Overview Recently, NSFOCUS CERT found that Atlassian officially fixed a command injection vulnerability in Bitbucket Server and Data Center. Due to flaws in Bitbucket Server and Data Center, attackers with user name control rights can implement command injection through environment variables, and eventually cause commands to be executed arbitrarily on the system. The CVSS score […]

Search

Subscribe to the NSFOCUS Blog