CVE-2007-6619

Description

The Setup Wizard in Atlassian JIRA Enterprise Edition before 3.12.1 does not properly restrict setup attempts after setup is complete, which allows remote attackers to change the default language.

Risk Information

Base Score
5.3
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
0.585

Associated Vulnerability

VulnerabilityOS Platform
Update jira 3.12 to latest versionWindows
Vulnerabilities CVE-2007-6617,CVE-2007-6618,CVE-2007-6619 are affected in Atlassian Jira 3.12Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234