High Severity RCE Vulnerability Affects Atlassian Bamboo Data Center and Server Versions
CVE-2024-21689
Key Information:
- Vendor
Atlassian
- Vendor
- CVE Published:
- 20 August 2024
Badges
What is CVE-2024-21689?
A remote code execution vulnerability exists in Bamboo Data Center and Server versions 9.1.0 through 9.6.0, allowing an authenticated attacker to execute arbitrary code. This vulnerability directly impacts confidentiality, integrity, and availability. User interaction is required for exploitation, which underscores the importance of actively maintaining up-to-date software. Users are strongly advised to upgrade to supported fixed versions, specifically Bamboo Data Center and Server 9.2.17 or later, or Bamboo Data Center and Server 9.6.5 or later. Details and downloads are available on Atlassian's official site and through their release notes.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Bamboo Data Center 9.6.0 to 9.6.4
Bamboo Data Center 9.5.0 to 9.5.4
Bamboo Data Center 9.4.0 to 9.4.4
References
EPSS Score
41% chance of being exploited in the next 30 days.
CVSS V3.1
CVSS V3.0
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved