Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gxr7-rwpm-wrqm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

Affected versions of Atlassian Jira Server or Data Center using the Jira Service Management addon allow remote attackers with JIRA Administrators access to execute arbitrary Java code via a server-side template injection vulnerability in the Email Template feature. The affected versions of Jira Server or Data Center are before version 8.13.12, and from version 8.14.0 before 8.19.1.

Affected versions of Atlassian Jira Server or Data Center using the Jira Service Management addon allow remote attackers with JIRA Administrators access to execute arbitrary Java code via a server-side template injection vulnerability in the Email Template feature. The affected versions of Jira Server or Data Center are before version 8.13.12, and from version 8.14.0 before 8.19.1.

EPSS

Процентиль: 74%
0.00832
Низкий

7.2 High

CVSS3

Дефекты

CWE-1336
CWE-74
CWE-94

Связанные уязвимости

CVSS3: 7.2
nvd
больше 4 лет назад

Affected versions of Atlassian Jira Server or Data Center using the Jira Service Management addon allow remote attackers with JIRA Administrators access to execute arbitrary Java code via a server-side template injection vulnerability in the Email Template feature. The affected versions of Jira Server or Data Center are before version 8.13.12, and from version 8.14.0 before 8.19.1.

EPSS

Процентиль: 74%
0.00832
Низкий

7.2 High

CVSS3

Дефекты

CWE-1336
CWE-74
CWE-94