[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

 
 
Paid content will be excluded from the download.

Filter
Matches : 26126 Download | Alert*

The host is installed with Atlassian Jira Server 7.6.0 before 8.5.4 and is prone to a cross-site request forgery vulnerability. A flaw is present in the application which fails to properly handle issues in the VerifyPopServerConnection!add.jspa component. Successful exploitation allows remote attackers an attacker to enumerate hosts and open ports on the internal network where Jira server is prese ...

The host is installed with Atlassian Jira Server 7.6.0 before 8.5.4 and is prone to a cross-site request forgery vulnerability. A flaw is present in the application which fails to properly handle issues in the VerifySmtpServerConnection!add.jspa component. Successful exploitation allows an attacker to enumerate hosts and open ports on the internal network where Jira server is present.

The host is installed with Atlassian Jira Server before 7.13.12, 8.0.0 before 8.4.3, 8.5.0 before 8.5.2 and is prone to an improper authorization vulnerability. A flaw is present in the application which fails to properly handle issues in the WorkflowResource class removeStatus method. Successful exploitation allows authenticated remote attackers who do not have project administration access to re ...

The host is installed with Atlassian Jira Server 7.0.10 before 7.6.16, 7.7.0 before 7.13.8, 8.0.0 before 8.1.3, 8.2.0 before 8.2.5, 8.3.0 before 8.3.4, and 8.4.0 before 8.4.1 and is prone to a code injection vulnerability. A flaw is present in the application which fails to properly handle issues in the Jira Importers Plugin (JIM). Successful exploitation allows an attacker to remotely execute cod ...

The host is installed with Atlassian Jira Server 7.6.0 before 8.4.0 and is prone to a server side request forgery vulnerability. A flaw is present in the application which fails to properly handle issues in the /plugins/servlet/gadgets/makeRequest resource. Successful exploitation allows remote attackers to access the content of internal network resources due to a logic bug in the JiraWhitelist cl ...

The host is installed with Atlassian Jira Server 7.13.0 before 7.13.6, 8.0.0 before 8.4.0 and is prone to a cross-site scripting vulnerability. A flaw is present in the application which fails to properly handle issues in various templates of the optimization plugin. Successful exploitation allows remote attackers who have permission to manage custom fields to inject arbitrary HTML or JavaScript.

The host is installed with Atlassian Jira Server before 7.13.12, 8.0.0 before 8.5.4, 8.6.0 before 8.6.1 and is prone to a broken access control vulnerability. A flaw is present in the application which fails to properly handle issues in the comment properties. Successful exploitation allows remote attackers to make comments on a ticket to which they do not have commenting permissions.

The host is installed with Atlassian Jira Server 7.6.0 before 8.5.2 and is prone to an cross-site request forgery vulnerability. A flaw is present in the application which fails to properly handle issues in various installation setup resources. Successful exploitation allows remote attackers to configure a Jira instance, which has not yet finished being installed.

The host is installed with Atlassian Jira Server 7.13.0 before 8.5.5 and is prone to an information disclosure vulnerability. A flaw is present in the application which fails to properly handle issues in the API. Successful exploitation allows remote attackers to determine if a Jira project key exists or not.

The host is installed with Atlassian Jira Server 8.2.4 before 8.5.11 and is prone to an improper authorization vulnerability. A flaw is present in the application which fails to properly handle issues in the API. Successful exploitation allows authenticated remote attackers to determine project titles they do not have access to.


Pages:      Start    1732    1733    1734    1735    1736    1737    1738    1739    1740    1741    1742    1743    1744    1745    ..   2612

© SecPod Technologies