CVE-2023-36662
Summary
| CVE | CVE-2023-36662 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-06-26 01:15:00 UTC |
| Updated | 2023-07-06 17:54:00 UTC |
| Description | The TechTime User Management components for Atlassian products allow stored XSS on the Bulk User Actions page. This affects User Management for Jira 2.0.0 through 2.17.1, User Management for Confluence 2.0.0 through 2.15.24, and User Management for Bitbucket 2.2.2 through 2.15.24. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Techtime | User Management | All | All | All | All |
| Application | Techtime | User Management | All | All | All | All |
| Application | Techtime | User Management | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Atlassian Partner, Wellington - Security Vulnerability Affecting User Management | MISC | techtime.co.nz | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.