Description
Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to view import source configuration information via a Broken Access Control vulnerability in the Insight Import Source feature. The affected versions are before version 4.21.0.
Remediation
References
Related Vulnerabilities
Jenkins DEPRECATED: Code Vulnerability (CVE-2016-3721)
WordPress Plugin WP HTML Sitemap Cross-Site Request Forgery (1.2)
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-14892)
WordPress Plugin Compfight Cross-Site Scripting (1.4)
WordPress Plugin Visitor Traffic Real Time Statistics Unspecified Vulnerability (4.2)