Description
Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to view import source configuration information via a Broken Access Control vulnerability in the Insight Import Source feature. The affected versions are before version 4.21.0.
Remediation
References
Related Vulnerabilities
Moodle Incomplete Cleanup Vulnerability (CVE-2024-38275)
TYPO3 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-4901)
Oracle Database Server CVE-2014-6560 Vulnerability (CVE-2014-6560)
PostgreSQL Resource Management Errors Vulnerability (CVE-2009-0922)
WordPress Plugin Twenty20 Image Before-After Malicious Code (1.6.3)