Impersonation via signup token leak in Atlassian Jira Service Management
CVE-2023-22501 Published on February 1, 2023
An authentication vulnerability was discovered in Jira Service Management Server and Data Center which allows an attacker to impersonate another user and gain access to a Jira Service Management instance under certain circumstances_._ With write access to a User Directory and outgoing email enabled on a Jira Service Management instance, an attacker could gain access to signup tokens sent to users with accounts that have never been logged into. Access to these tokens can be obtained in two cases: * If the attacker is included on Jira issues or requests with these users, or * If the attacker is forwarded or otherwise gains access to emails containing a View Request link from these users. Bot accounts are particularly susceptible to this scenario. On instances with single sign-on, external customer accounts can be affected in projects where anyone can create their own account.
Weakness Type
What is an authentification Vulnerability?
When an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct.
CVE-2023-22501 has been classified to as an authentification vulnerability or weakness.
Products Associated with CVE-2023-22501
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2023-22501 are published in Atlassian Jira:
Affected Versions
Atlassian Jira Service Management Data Center:- Version before 5.3.0 is unaffected.
- Version before 5.3.3 is affected.
- Version before 5.4.2 is affected.
- Version before 5.5.1 is affected.
- Version before 5.6.0 is affected.
- Version before 5.3.0 is unaffected.
- Version before 5.3.3 is affected.
- Version before 5.4.2 is affected.
- Version before 5.5.1 is affected.
- Version before 5.6.0 is affected.
- Version 5.3.0 and below 5.3.3 is affected.
- Version 5.4.0 and below 5.4.2 is affected.
- Version 5.5.0 is affected.
- Version 5.3.0 and below 5.3.3 is affected.
- Version 5.4.0 and below 5.4.2 is affected.
- Version 5.5.0 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.