Critical severity9.0NVD Advisory· Published Nov 29, 2017· Updated May 13, 2026
CVE-2017-14591
CVE-2017-14591
Description
Atlassian Fisheye and Crucible versions less than 4.4.3 and version 4.5.0 are vulnerable to argument injection through filenames in Mercurial repositories, allowing attackers to execute arbitrary code on a system running the impacted software.
Affected products
1- Atlassian/Fisheye and Cruciblev5Range: Versions less than 4.4.3 OR version 4.5.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.securityfocus.com/bid/102194nvdThird Party AdvisoryVDB Entry
- confluence.atlassian.com/x/plcGOnvdIssue TrackingMitigationVendor Advisory
News mentions
0No linked articles in our index yet.