Boletines de Vulnerabilidades |
CVE-2012-2928 |
|
| Software afectado | ATLASSIAN |
| The Gliffy plugin before 3.7.1 for Atlassian JIRA, and before 4.2 for Atlassian Confluence, does not properly restrict the capabilities of third-party XML parsers, which allows remote attackers to read arbitrary files or cause a denial of service (resource consumption) via unspecified vectors. | |
Link: |
|
| https://nvd.nist.gov/vuln/detail/CVE-2012-2928 | |














