HTTP: Netic Group Export add-on before 1.0.3 for Atlassian Jira does not perform authorization checks
This signature detects attempts to exploit a known vulnerability against Netic Group Export add-on before 1.0.3 for Atlassian Jira. A successful attack can lead to security bypass.
Extended Description
The Netic Group Export add-on before 1.0.3 for Atlassian Jira does not perform authorization checks. This might allow an unauthenticated user to export all groups from the Jira instance by making a groupexport_download=true request to a plugins/servlet/groupexportforjira/admin/ URI.
Affected Products
Netic group_export
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Netic