CVE-2019-3401
—CVSS 3.1
5.3 medium
EPSS
13%p96
Published
()
Modified
Description
The ManageFilters.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to enumerate usernames via an incorrect authorisation check.
- Vendors
- atlassian
- Products
- jira, jira server
- Weakness
- CWE-863
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.