2010-06-22

Atlassian JIRA FishEye Plugin

ソフト名:Atlassian JIRA FishEye Plugin 3.0.10
回避策:JIRA FishEye Plugin Security Advisory 2010-06-18にて対応
脆弱性:XSS, 認証資格情報の奪取, CSRF, Webキャッシュ汚染, 権限の昇格, リモートプロセス実行
ソース:
https://studio.plugins.atlassian.com/wiki/display/FISH/JIRA+FishEye+Plugin+Security+Advisory+2010-06-18
http://www.securityfocus.com/bid/40955
http://www.securityfocus.com/bid/40956
http://www.securityfocus.com/bid/40959
http://www.securityfocus.com/bid/40962
http://secunia.com/advisories/40185
危険性:High Risk

0 件のコメント:

コメントを投稿