Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-25qr-gjf9-whgm

Опубликовано: 16 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Affected versions of Atlassian Jira Server and Data Center allow unauthenticated remote attackers to restore the default configuration of fields via a Cross-Site Request Forgery (CSRF) vulnerability in the /secure/admin/RestoreDefaults.jspa endpoint. The affected versions are before version 8.21.0.

Affected versions of Atlassian Jira Server and Data Center allow unauthenticated remote attackers to restore the default configuration of fields via a Cross-Site Request Forgery (CSRF) vulnerability in the /secure/admin/RestoreDefaults.jspa endpoint. The affected versions are before version 8.21.0.

EPSS

Процентиль: 59%
0.00389
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 4.3
nvd
больше 3 лет назад

Affected versions of Atlassian Jira Server and Data Center allow unauthenticated remote attackers to restore the default configuration of fields via a Cross-Site Request Forgery (CSRF) vulnerability in the /secure/admin/RestoreDefaults.jspa endpoint. The affected versions are before version 8.21.0.

EPSS

Процентиль: 59%
0.00389
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-352