Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wr82-63qc-g2h8

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

The IconUriServlet of the Atlassian OAuth Plugin from version 1.3.0 before version 1.9.12 and from version 2.0.0 before version 2.0.4 allows remote attackers to access the content of internal network resources and/or perform an XSS attack via Server Side Request Forgery (SSRF).

The IconUriServlet of the Atlassian OAuth Plugin from version 1.3.0 before version 1.9.12 and from version 2.0.0 before version 2.0.4 allows remote attackers to access the content of internal network resources and/or perform an XSS attack via Server Side Request Forgery (SSRF).

EPSS

Процентиль: 97%
0.40742
Средний

6.1 Medium

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 6.1
nvd
больше 8 лет назад

The IconUriServlet of the Atlassian OAuth Plugin from version 1.3.0 before version 1.9.12 and from version 2.0.0 before version 2.0.4 allows remote attackers to access the content of internal network resources and/or perform an XSS attack via Server Side Request Forgery (SSRF).

EPSS

Процентиль: 97%
0.40742
Средний

6.1 Medium

CVSS3

Дефекты

CWE-918