cbcvebase.
CVE-2020-14170
published 2020-07-09

CVE-2020-14170: Webhooks in Atlassian Bitbucket Server from version 5.4.0 before version 7.3.1 allow remote attackers to access the content of internal network resources via a…

medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
Webhooks in Atlassian Bitbucket Server from version 5.4.0 before version 7.3.1 allow remote attackers to access the content of internal network resources via a Server-Side Request Forgery (SSRF) vulnerability.

Affected

3 ranges
VendorProductVersion rangeFixed in
atlassianbitbucket>= 5.4.0 < 7.3.17.3.1
atlassianbitbucket_server>= 5.4.0 < unspecifiedunspecified
atlassianbitbucket_server>= unspecified < 7.3.17.3.1