
Last updated: Sun May 26 05:07:11 EDT 2013
CVE Publication rate: 11.83
NVD provides four mailing lists to the public. For information and subscription instructions please visit NVD Mailing Lists
Vulnerability Workload Index: 6.21
The WebWork 1 web application framework in Atlassian JIRA before 3.13.2 allows remote attackers to invoke exposed public JIRA methods via a crafted URL that is dynamically transformed into method calls, aka "WebWork 1 Parameter Injection Hole."
By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.
| Configuration 1 |
| OR |
| * cpe:/a:atlassian:jira:3.13 |
| * cpe:/a:atlassian:jira:3.13.1 and previous versions |
| * cpe:/a:atlassian:jira:3.12 |
| * cpe:/a:atlassian:jira:3.13.1::enterprise |
| * cpe:/a:atlassian:jira:3.13.1::professional |
| * cpe:/a:atlassian:jira:3.13.1::standard |
| * cpe:/a:atlassian:jira:3.13::enterprise |
| * cpe:/a:atlassian:jira:3.13::standard |
| * cpe:/a:atlassian:jira:3.13::professional |
| * cpe:/a:atlassian:jira:3.12.3 |
| * cpe:/a:atlassian:jira:3.12.3::enterprise |
| * cpe:/a:atlassian:jira:3.12.3::professional |
| * cpe:/a:atlassian:jira:3.12.3::standard |
| * cpe:/a:atlassian:jira:3.12.2 |
| * cpe:/a:atlassian:jira:3.12.2::standard |
| * cpe:/a:atlassian:jira:3.12.2::enterprise |
| * cpe:/a:atlassian:jira:3.12.2::professional |
| * cpe:/a:atlassian:jira:3.12.1 |
| * cpe:/a:atlassian:jira:3.12.1::enterprise |
| * cpe:/a:atlassian:jira:3.12.1::professional |
| * cpe:/a:atlassian:jira:3.12.1::standard |
| * cpe:/a:atlassian:jira:3.12::standard |
| * cpe:/a:atlassian:jira:3.12::enterprise |
| * cpe:/a:atlassian:jira:3.12::professional |
| * cpe:/a:atlassian:jira:3.11 |
| * cpe:/a:atlassian:jira:3.11::professional |
| * cpe:/a:atlassian:jira:3.11::enterprise |
| * cpe:/a:atlassian:jira:3.11::standard |
| * cpe:/a:atlassian:jira:3.10.2 |
| * cpe:/a:atlassian:jira:3.10.2::enterprise |
| * cpe:/a:atlassian:jira:3.10.2::professional |
| * cpe:/a:atlassian:jira:3.10.2::standard |
| * cpe:/a:atlassian:jira:3.10.1 |
| * cpe:/a:atlassian:jira:3.10.1::enterprise |
| * cpe:/a:atlassian:jira:3.10.1::standard |
| * cpe:/a:atlassian:jira:3.10.1::professional |
| * cpe:/a:atlassian:jira:3.10 |
| * cpe:/a:atlassian:jira:3.10::enterprise |
| * cpe:/a:atlassian:jira:3.10::professional |
| * cpe:/a:atlassian:jira:3.10::standard |
| * cpe:/a:atlassian:jira:3.9.3 |
| * cpe:/a:atlassian:jira:3.9.3::enterprise |
| * cpe:/a:atlassian:jira:3.9.3::professional |
| * cpe:/a:atlassian:jira:3.9.3::standard |
| * cpe:/a:atlassian:jira:3.9.2::standard |
| * cpe:/a:atlassian:jira:3.9.2::professional |
| * cpe:/a:atlassian:jira:3.9.2::enterprise |
| * cpe:/a:atlassian:jira:3.9.2 |
| * cpe:/a:atlassian:jira:3.9.1 |
| * cpe:/a:atlassian:jira:3.9.1::enterprise |
| * cpe:/a:atlassian:jira:3.9.1::professional |
| * cpe:/a:atlassian:jira:3.9.1::standard |
| * cpe:/a:atlassian:jira:3.9::standard |
| * cpe:/a:atlassian:jira:3.9::professional |
| * cpe:/a:atlassian:jira:3.9::enterprise |
| * cpe:/a:atlassian:jira:3.9 |
| * cpe:/a:atlassian:jira:3.8.1::standard |
| * cpe:/a:atlassian:jira:3.8.1::professional |
| * cpe:/a:atlassian:jira:3.8.1::enterprise |
| * cpe:/a:atlassian:jira:3.8.1 |
| * cpe:/a:atlassian:jira:3.8::standard |
| * cpe:/a:atlassian:jira:3.8::professional |
| * cpe:/a:atlassian:jira:3.8::enterprise |
| * cpe:/a:atlassian:jira:3.8 |
| * cpe:/a:atlassian:jira:3.7.4::standard |
| * cpe:/a:atlassian:jira:3.7.4::professional |
| * cpe:/a:atlassian:jira:3.7.4::enterprise |
| * cpe:/a:atlassian:jira:3.7.4 |
| * cpe:/a:atlassian:jira:3.7.3::standard |
| * cpe:/a:atlassian:jira:3.7.3::professional |
| * cpe:/a:atlassian:jira:3.7.3::enterprise |
| * cpe:/a:atlassian:jira:3.7.3 |
| * cpe:/a:atlassian:jira:3.7.2::standard |
| * cpe:/a:atlassian:jira:3.7.2::professional |
| * cpe:/a:atlassian:jira:3.7.2::enterprise |
| * cpe:/a:atlassian:jira:3.7.2 |
| * cpe:/a:atlassian:jira:3.7.1::standard |
| * cpe:/a:atlassian:jira:3.7.1::professional |
| * cpe:/a:atlassian:jira:3.7.1::enterprise |
| * cpe:/a:atlassian:jira:3.7.1 |
| * cpe:/a:atlassian:jira:3.7::standard |
| * cpe:/a:atlassian:jira:3.7::professional |
| * cpe:/a:atlassian:jira:3.7::enterprise |
| * cpe:/a:atlassian:jira:3.7 |
| * cpe:/a:atlassian:jira:3.6.5::standard |
| * cpe:/a:atlassian:jira:3.6.5::professional |
| * cpe:/a:atlassian:jira:3.6.5::enterprise |
| * cpe:/a:atlassian:jira:3.6.5 |
| * cpe:/a:atlassian:jira:3.6.4::professional |
| * cpe:/a:atlassian:jira:3.6.4::enterprise |
| * cpe:/a:atlassian:jira:3.6.4 |
| * cpe:/a:atlassian:jira:3.6.4::standard |
| * cpe:/a:atlassian:jira:3.6.3::standard |
| * cpe:/a:atlassian:jira:3.6.3::professional |
| * cpe:/a:atlassian:jira:3.6.3::enterprise |
| * cpe:/a:atlassian:jira::3.6.3 |
| * cpe:/a:atlassian:jira:3.6.2::standard |
| * cpe:/a:atlassian:jira:3.6.2::professional |
| * cpe:/a:atlassian:jira:3.6.2::enterprise |
| * cpe:/a:atlassian:jira:3.6.2 |
| * cpe:/a:atlassian:jira:3.6.1::standard |
| * cpe:/a:atlassian:jira:3.6.1::professional |
| * cpe:/a:atlassian:jira:3.6.1::enterprise |
| * cpe:/a:atlassian:jira:3.6.1 |
| * cpe:/a:atlassian:jira:3.6::standard |
| * cpe:/a:atlassian:jira:3.6::professional |
| * cpe:/a:atlassian:jira:3.6::enterprise |
| * cpe:/a:atlassian:jira:3.6 |
| * cpe:/a:atlassian:jira:3.5.3::standard |
| * cpe:/a:atlassian:jira:3.5.3::professional |
| * cpe:/a:atlassian:jira:3.5.3::enterprise |
| * cpe:/a:atlassian:jira:3.5.3 |
| * cpe:/a:atlassian:jira:3.5.2::standard |
| * cpe:/a:atlassian:jira:3.5.2::professional |
| * cpe:/a:atlassian:jira:3.5.2::enterprise |
| * cpe:/a:atlassian:jira:3.5.2 |
| * cpe:/a:atlassian:jira:3.5.1::standard |
| * cpe:/a:atlassian:jira:3.5.1::professional |
| * cpe:/a:atlassian:jira:3.5.1::enterprise |
| * cpe:/a:atlassian:jira:3.5.1 |
| * cpe:/a:atlassian:jira:3.5 |
| * cpe:/a:atlassian:jira:3.5::standard |
| * cpe:/a:atlassian:jira:3.5::professional |
| * cpe:/a:atlassian:jira:3.5::enterprise |
| * cpe:/a:atlassian:jira:3.4.3::standard |
| * cpe:/a:atlassian:jira:3.4.3::professional |
| * cpe:/a:atlassian:jira:3.4.3::enterprise |
| * cpe:/a:atlassian:jira:3.4.3 |
| * cpe:/a:atlassian:jira:3.4.2::professional |
| * cpe:/a:atlassian:jira:3.4.2::enterprise |
| * cpe:/a:atlassian:jira:3.4.2 |
| * cpe:/a:atlassian:jira:3.4.2::standard |
| * cpe:/a:atlassian:jira:3.4.1::standard |
| * cpe:/a:atlassian:jira:3.4.1::professional |
| * cpe:/a:atlassian:jira:3.4.1::enterprise |
| * cpe:/a:atlassian:jira:3.4.1 |
| * cpe:/a:atlassian:jira:3.3.3::standard |
| * cpe:/a:atlassian:jira:3.3.3::professional |
| * cpe:/a:atlassian:jira:3.3.3::enterprise |
| * cpe:/a:atlassian:jira:3.3.3 |
| * cpe:/a:atlassian:jira:3.3.2::standard |
| * cpe:/a:atlassian:jira:3.3.2::professional |
| * cpe:/a:atlassian:jira:3.3.2::enterprise |
| * cpe:/a:atlassian:jira:3.3.2 |
| * cpe:/a:atlassian:jira:3.3.1::standard |
| * cpe:/a:atlassian:jira:3.3.1::professional |
| * cpe:/a:atlassian:jira:3.3.1::enterprise |
| * cpe:/a:atlassian:jira:3.3.1 |
| * cpe:/a:atlassian:jira:3.3::standard |
| * cpe:/a:atlassian:jira:3.3::professional |
| * cpe:/a:atlassian:jira:3.3::enterprise |
| * cpe:/a:atlassian:jira:3.3 |
| * cpe:/a:atlassian:jira:3.2.3::standard |
| * cpe:/a:atlassian:jira:3.2.3::professional |
| * cpe:/a:atlassian:jira:3.2.3::enterprise |
| * cpe:/a:atlassian:jira:3.2.3 |
| * cpe:/a:atlassian:jira:3.2.2::standard |
| * cpe:/a:atlassian:jira:3.2.2::professional |
| * cpe:/a:atlassian:jira:3.2.2::enterprise |
| * cpe:/a:atlassian:jira:3.2.2 |
| * cpe:/a:atlassian:jira:3.2.1::standard |
| * cpe:/a:atlassian:jira:3.2.1::professional |
| * cpe:/a:atlassian:jira:3.2.1::enterprise |
| * cpe:/a:atlassian:jira:3.2.1 |
| * cpe:/a:atlassian:jira:3.2::standard |
| * cpe:/a:atlassian:jira:3.2::professional |
| * cpe:/a:atlassian:jira:3.2::enterprise |
| * cpe:/a:atlassian:jira:3.2 |
| * cpe:/a:atlassian:jira:3.1.1::standard |
| * cpe:/a:atlassian:jira:3.1.1::professional |
| * cpe:/a:atlassian:jira:3.1.1::enterprise |
| * cpe:/a:atlassian:jira:3.1.1 |
| * cpe:/a:atlassian:jira:3.1::standard |
| * cpe:/a:atlassian:jira:3.1::professional |
| * cpe:/a:atlassian:jira:3.1::enterprise |
| * cpe:/a:atlassian:jira:3.1 |
| * cpe:/a:atlassian:jira:3.0.3::standard |
| * cpe:/a:atlassian:jira:3.0.3::professional |
| * cpe:/a:atlassian:jira:3.0.3::enterprise |
| * cpe:/a:atlassian:jira:3.0.3 |
| * cpe:/a:atlassian:jira:3.0.2::standard |
| * cpe:/a:atlassian:jira:3.0.2::professional |
| * cpe:/a:atlassian:jira:3.0.2::enterprise |
| * cpe:/a:atlassian:jira:3.0.2 |
| * cpe:/a:atlassian:jira:3.0.1::standard |
| * cpe:/a:atlassian:jira:3.0.1::professional |
| * cpe:/a:atlassian:jira:3.0.1::enterprise |
| * cpe:/a:atlassian:jira:3.0.1 |
| * cpe:/a:atlassian:jira:3.0::standard |
| * cpe:/a:atlassian:jira:3.0::professional |
| * cpe:/a:atlassian:jira:3.0::enterprise |
| * cpe:/a:atlassian:jira:3.0 |
| * cpe:/a:atlassian:jira:2.6.1::standard |
| * cpe:/a:atlassian:jira:2.6.1::professional |
| * cpe:/a:atlassian:jira:2.6.1::enterprise |
| * cpe:/a:atlassian:jira:2.6.1 |
| * cpe:/a:atlassian:jira:2.6::standard |
| * cpe:/a:atlassian:jira:2.6::professional |
| * cpe:/a:atlassian:jira:2.6::enterprise |
| * cpe:/a:atlassian:jira:2.6 |
| * cpe:/a:atlassian:jira:2.5.3::standard |
| * cpe:/a:atlassian:jira:2.5.3::professional |
| * cpe:/a:atlassian:jira:2.5.3::enterprise |
| * cpe:/a:atlassian:jira:2.5.3 |
| * cpe:/a:atlassian:jira:2.5.2 |
| * cpe:/a:atlassian:jira:2.5.2::standard |
| * cpe:/a:atlassian:jira:2.5.2::professional |
| * cpe:/a:atlassian:jira:2.5.2::enterprise |
| * cpe:/a:atlassian:jira:2.5.1::standard |
| * cpe:/a:atlassian:jira:2.5.1::professional |
| * cpe:/a:atlassian:jira:2.5.1::enterprise |
| * cpe:/a:atlassian:jira:2.5.1 |
| * cpe:/a:atlassian:jira:2.4.1::standard |
| * cpe:/a:atlassian:jira:2.4.1 |
| * cpe:/a:atlassian:jira:2.4.1::professional |
| * cpe:/a:atlassian:jira:2.4.1::enterprise |
| * cpe:/a:atlassian:jira:2.3::standard |
| * cpe:/a:atlassian:jira:2.3::professional |
| * cpe:/a:atlassian:jira:2.3::enterprise |
| * cpe:/a:atlassian:jira:2.3 |
| * cpe:/a:atlassian:jira:2.2.1::standard |
| * cpe:/a:atlassian:jira:2.2.1::professional |
| * cpe:/a:atlassian:jira:2.2.1::enterprise |
| * cpe:/a:atlassian:jira:2.2.1 |
| * cpe:/a:atlassian:jira:2.2::standard |
| * cpe:/a:atlassian:jira:2.2::professional |
| * cpe:/a:atlassian:jira:2.2::enterprise |
| * cpe:/a:atlassian:jira:2.2 |
| * cpe:/a:atlassian:jira:2.1::standard |
| * cpe:/a:atlassian:jira:2.1::professional |
| * cpe:/a:atlassian:jira:2.1::enterprise |
| * cpe:/a:atlassian:jira:2.1 |