Atlassian JIRA < 3.13.3 Multiple Vulnerabilities
High Nessus Network Monitor Plugin ID 4983
SynopsisThe remote host is vulnerable to multiple attack vectors.
DescriptionAtlassian JIRA, a web-based application for bug tracking, issue tracking and project management, installed on the remote web server is affected by one or more of the following issues :
- A cross-site scripting issue due to its failure to sanitize user-supplied input that is then returned in the HTTP response header.
- A cross-site scripting issue within the 'DWR' library
- A cross-site scripting issue within the 'Charting' plugin.
SolutionUpgrade to version 3.13.3 or higher.