vendor:
JIRA and the HipChat for JIRA plugin
by:
Chris Wood
8,8
CVSS
HIGH
Velocity Template Injection
94
CWE
Product Name: JIRA and the HipChat for JIRA plugin
Affected Version From: 1.3.2
Affected Version To: 6.30.0
Patch Exists: YES
Related CWE: CVE-2015-5603
CPE: a:atlassian:jira
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7 x64
2015
JIRA and HipChat for JIRA plugin Velocity Template Injection Vulnerability
This vulnerability allows any authenticated JIRA user to execute code running as Tomcat identity. This is achieved by sending a specially crafted request to the JIRA server, which contains malicious Velocity Template code. This code is then executed by the server, allowing the attacker to execute arbitrary code.
Mitigation:
Upgrade to the latest version of JIRA and the HipChat for JIRA plugin.