CVE-2012-2927 Information
Feb 14, 2021
cve
Description
The TM Software Tempo plugin before 6.4.3.1 6.5.x before 6.5.0.2 and 7.x before 7.0.3 for Atlassian JIRA does not properly restrict the capabilities of third-party XML parsers which allows remote authenticated users to cause a denial of service (resource consumption) via unspecified vectors.
Reference
http://confluence.atlassian.com/display/JIRA/JIRA+Security+Advisory+2012-05-17 http://osvdb.org/81993 http://secunia.com/advisories/49166 http://www.securityfocus.com/bid/53595 https://exchange.xforce.ibmcloud.com/vulnerabilities/75697
Share on: