Описание
The Setup Wizard in Atlassian JIRA Enterprise Edition before 3.12.1 does not properly restrict setup attempts after setup is complete, which allows remote attackers to change the default language.
Ссылки
- Patch
- PatchVendor Advisory
- Patch
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.12 (включая)
cpe:2.3:a:atlassian:jira:*:*:enterprise:*:*:*:*:*
EPSS
Процентиль: 68%
0.00585
Низкий
7.5 High
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
около 3 лет назад
The Setup Wizard in Atlassian JIRA Enterprise Edition before 3.12.1 does not properly restrict setup attempts after setup is complete, which allows remote attackers to change the default language.
EPSS
Процентиль: 68%
0.00585
Низкий
7.5 High
CVSS2
Дефекты
CWE-264