Remote File Read Vulnerability in Atlassian Crowd by Atlassian
CVE-2013-3925

Currently unrated

Key Information:

Vendor

Atlassian

Status
Vendor
CVE Published:
1 July 2013

What is CVE-2013-3925?

The vulnerability in Atlassian Crowd allows remote attackers to exploit XML external entity declarations. By manipulating requests sent to specific services, attackers can read arbitrary files and potentially send HTTP requests to internal servers, posing significant threats to system integrity and confidentiality.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.