ZeroHour

CVE-2019-3401

CVSS 3.1
5.3 medium
EPSS
13%p96
Published
()
Modified
Description

The ManageFilters.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to enumerate usernames via an incorrect authorisation check.

Vendors
atlassian
Products
jira, jira server
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.