CVE-2020-4019

Publication date

2020-06-01 06:35:32

Family

atlassian

State

PUBLISHED

Description

The file editing functionality in the Atlassian Companion App before version 1.0.0 allows local attackers to have the app run a different executable in place of the apps cmd.exe via a untrusted search path vulnerability.