Vulnerability Bulletins |
CVE-2016-5229 |
|
| Affected software | ATLASSIAN |
| Atlassian Bamboo before 5.11.4.1 and 5.12.x before 5.12.3.1 does not properly restrict permitted deserialized classes, which allows remote attackers to execute arbitrary code via vectors related to XStream Serialization. | |
Link: |
|
| https://nvd.nist.gov/vuln/detail/CVE-2016-5229 | |






