CVE-2023-36662: The TechTime User Management components for Atlassian products allow stored XSS on the Bulk User Actions page. This affects User Management for...

0.0 CVSS

Description

The TechTime User Management components for Atlassian products allow stored XSS on the Bulk User Actions page. This affects User Management for Jira 2.0.0 through 2.17.1, User Management for Confluence 2.0.0 through 2.15.24, and User Management for Bitbucket 2.2.2 through 2.15.24.

Classification

CVE ID: CVE-2023-36662

CVSS Base Severity: LOW

CVSS Base Score: 0.0

Affected Products

Vendor: n/a

Product: n/a

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.05% (probability of being exploited)

EPSS Percentile: 20.78% (scored less or equal to compared to others)

EPSS Date: 2025-02-03 (when was this score calculated)

References

https://techtime.co.nz/display/TECHTIME/Security+Vulnerability+Affecting+User+Management

Timeline