Atlassian JIRA FishEye Plugin Cross-Site Request Forgery Vulnerability
BID:40959
Info
Atlassian JIRA FishEye Plugin Cross-Site Request Forgery Vulnerability
| Bugtraq ID: | 40959 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 18 2010 12:00AM |
| Updated: | Jun 18 2010 12:00AM |
| Credit: | Atlassian |
| Vulnerable: |
Atlassian JIRA Fisheye Plugin 3.0.16 Atlassian JIRA Fisheye Plugin 3.0.10 Atlassian JIRA Fisheye Plugin 2.5 Atlassian JIRA Fisheye Plugin 2.4 Atlassian JIRA Fisheye Plugin 2.3 |
| Not Vulnerable: |
Atlassian JIRA Fisheye Plugin 3.0.17 |
Exploit / POC
Atlassian JIRA FishEye Plugin Cross-Site Request Forgery Vulnerability
To exploit this issue, an attacker must entice an unsuspecting victim into visiting a malicious webpage.
To exploit this issue, an attacker must entice an unsuspecting victim into visiting a malicious webpage.
Solution / Fix
Atlassian JIRA FishEye Plugin Cross-Site Request Forgery Vulnerability
Solution:
Updates are available. Please see the references for more information.
Atlassian JIRA Fisheye Plugin 3.0.16
Solution:
Updates are available. Please see the references for more information.
Atlassian JIRA Fisheye Plugin 3.0.16
-
Atlassian jira-fisheye-plugin-3.0.17-distribution.zip
https://plugins.atlassian.com/server/1.0/download/pluginVersion/23073