.. / CVE-2019-8442

Exploit for Jira - Local File Inclusion (CVE-2019-8442)

Description:

Jira before version 7.13.4, from version 8.0.0 before version 8.0.4, and from version 8.1.0 before version 8.1.1, allows remote attackers to access files in the Jira webroot under the META-INF directory via local file inclusion.

Nuclei Template

View the template here CVE-2019-8442.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2019/CVE-2019-8442.yaml
Copy

References:

https://github.com/ARPSyndicate/cvemon
https://jira.atlassian.com/browse/JRASERVER-69241
https://github.com/0ps/pocassistdb
https://nvd.nist.gov/vuln/detail/CVE-2019-8442
https://github.com/ARPSyndicate/kenzer-templates