vulnerability

Atlassian JIRA: Information Exposure (CVE-2020-14178)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Sep 1, 2020
Added
Sep 17, 2020
Modified
Sep 17, 2020

Description

Affected versions of Atlassian Jira Server and Data Center allow remote attackers to enumerate project keys via an Information Disclosure vulnerability in the /browse.PROJECTKEY endpoint. The affected versions are before version 7.13.7, from version 8.0.0 before 8.5.8, and from version 8.6.0 before 8.12.0.

Solutions

atlassian-jira-upgrade-7_13_7atlassian-jira-upgrade-8_12_0atlassian-jira-upgrade-8_5_8
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.