The Netic User Export add-on before 2.0.6 for Atlassian Jira does not perform authorization checks. This might allow an unauthenticated user to export all users from Jira by making an HTTP request to the affected endpoint.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-09-05T17:30:21
Updated: 2024-08-03T10:54:03.531Z
Reserved: 2022-08-15T00:00:00
Link: CVE-2022-38367
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2022-09-05T18:15:08.320
Modified: 2022-09-08T14:51:59.187
Link: CVE-2022-38367
Redhat
No data.