CVE-2019-11581: Atlassian Jira Server-Side Template Injection

CVE-2019-11581: Atlassian Jira Server-Side Template Injection-渗透云记 - 专注于网络安全与技术分享
CVE-2019-11581: Atlassian Jira Server-Side Template Injection
此内容为付费阅读,请付费后查看
100积分
付费阅读

漏洞标题

CVE-2019-11581: Atlassian Jira Server-Side Template Injection

漏洞描述

Jira Server and Data Center is susceptible to a server-side template injection vulnerability via the ContactAdministrators and SendBulkMail actions. An attacker is able to remotely execute code on systems that run a vulnerable version of Jira Server or Data Center. All versions of Jira Server and Data Center from 4.4.0 before 7.6.14, from 7.7.0 before 7.13.5, from 8.0.0 before 8.0.3, from 8.1.0 before 8.1.2, and from 8.2.0 before 8.2.3 are affected by this vulnerability.

PoC代码

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享