$1,913 Unauthenticated SSRF Leading To Interal Port Scanning | Bug Bounty POC 2023 | P3 Severity

Описание к видео $1,913 Unauthenticated SSRF Leading To Interal Port Scanning | Bug Bounty POC 2023 | P3 Severity

Atlassian Jira is vulnerable to an unauthorized server side request forgery (SSRF) vulnerability that affects the endpoint /plugins/servlet/oauth/users/icon-uri?consumerUri=https://google.com. An unauthenticated attacker could exploit this vulnerability by sending a specially crafted web request to a vulnerable Jira server. Successful exploitation would result in unauthorized access to view and potentially modify internal network resources.

Комментарии

Информация по комментариям в разработке