CVE Published: 15/02/2022 |
CVE Updated: 04/10/2024 |
CVE Year: 2021 Source: atlassian |
Vendor: Atlassian |
Product: Jira Server Status : PUBLISHED
CVE-2021-43952 Description
Affected versions of Atlassian Jira Server and Data Center allow unauthenticated remote attackers to restore the default configuration of fields via a Cross-Site Request Forgery (CSRF) vulnerability in the /secure/admin/RestoreDefaults.jspa endpoint. The affected versions are before version 8.21.0.