Description
Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to view import source configuration information via a Broken Access Control vulnerability in the Insight Import Source feature. The affected versions are before version 4.21.0.
Remediation
References
Related Vulnerabilities
Drupal Other Vulnerability (CVE-2006-2833)
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2021-20187)
SharePoint CVE-2017-8511 Vulnerability (CVE-2017-8511)
WordPress Plugin Asgaros Forum Multiple Vulnerabilities (1.15.14)
WordPress Plugin AddToAny Share Buttons Cross-Site Scripting (1.6.6)