CVE-2017-15576

HIGH7.5EPSS 0.54%
Published: 10/18/2017Modified: 4/28/2026
Also known as:DEBIAN-CVE-2017-15576

Description

Redmine before 3.2.6 and 3.3.x before 3.3.3 mishandles Time Entry rendering in activity views, which allows remote attackers to obtain sensitive information.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.5CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

References (1)