Multiple unspecified services in Atlassian Bamboo before 5.9.9 and 5.10.x before 5.10.0 do not require authentication, which allows remote attackers to obtain sensitive information, modify settings, or manage build agents via unknown vectors involving the JMS port.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2016-02-08 11:59
Updated : 2018-10-09 12:58
NVD link : CVE-2015-8361
Mitre link : CVE-2015-8361
JSON object : View
CWE
CWE-284
Improper Access Control
Products Affected
atlassian
- bamboo