vulnerability
Atlassian JIRA: Incorrect Authorization (CVE-2019-20404)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:L/Au:S/C:P/I:N/A:N) | Feb 6, 2020 | Feb 11, 2020 | Sep 17, 2020 |
Severity
4
CVSS
(AV:N/AC:L/Au:S/C:P/I:N/A:N)
Published
Feb 6, 2020
Added
Feb 11, 2020
Modified
Sep 17, 2020
Description
The API in Atlassian Jira Server and Data Center before version 8.6.0 allows authenticated remote attackers to determine project titles they do not have access to via an improper authorization vulnerability.
Solution
atlassian-jira-upgrade-8_6_0
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.