Blog | G5 Cyber Security

Contrast Security Boosts App Security with

Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to access the content of internal network resources via a Server-Side Request Forgery (SSRF) vulnerability in the CSV importing feature of JSM Insight. The vulnerability in Booked versions prior to 3.3 allows a remote unauthenticated attacker to redirect a user to an arbitrary web site and conduct a phishing attack by having a user access a specially crafted URL. Unauthenticated attackers may cause a denial-of-service (DoS) condition on the server where the vulnerability occurs.”]

Source: https://www.darkreading.com/contrast-security-boosts-app-security-with-self-protecting-software/v/d-id/1334095

Exit mobile version