3.5
CVSSv2

CVE-2012-1500

Published: 13/02/2020 Updated: 24/02/2020
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 355
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Stored XSS vulnerability in UpdateFieldJson.jspa in JIRA 4.4.3 and GreenHopper prior to 5.9.8 allows an malicious user to inject arbitrary script code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

atlassian greenhopper

atlassian jira 4.4.3

Exploits

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 CVE-2012-1500, Stored XSS in JIRA v443#663-r165197, GreenHopper Resolved in Version 598, Proof of Concept External References: CVE-2112-1500 CVE-2112-1500 XSSCx Blog GHS-5642 Reported to Vendor on Mar 7, 2012, Resolved 8/22/2012 XSSCx Research Award to Reporter: 1250 Euros Introduction JIRA ...