Security Advisory

CVE-2021-43952

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-02-15 00:45:10
Last updated 2024-10-04 18:11:59
Assigner atlassian
State PUBLISHED

Description

Affected versions of Atlassian Jira Server and Data Center allow unauthenticated remote attackers to restore the default configuration of fields via a Cross-Site Request Forgery (CSRF) vulnerability in the /secure/admin/RestoreDefaults.jspa endpoint. The affected versions are before version 8.21.0.