CVE-2010-1165observed exploitation

CVE-2010-1165

Published · Updated

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 4.4%
from disclosure to weapon
Published on NVDApr 20
VulnCheckApr 20
exploitation probability
4.4%top 9% of all CVEs
observed exploitation
yesVulnCheck
Atlassian JIRA 3.12 through 4.1 allows remote authenticated administrators to execute arbitrary code by modifying the (1) attachment (aka attachments), (2) index (aka indexing), or (3) backup path and then uploading a file, as exploited in the wild in April 2010.
Affected products
n/a · n/a