ZeroHour

CVE-2020-14168

CVSS 3.1
5.9 medium
EPSS
2%p76
Published
()
Modified
Description

The email client in Jira Server and Data Center before version 7.13.16, from 8.5.0 before 8.5.7, from 8.8.0 before 8.8.2, and from 8.9.0 before 8.9.1 allows remote attackers to access outgoing emails between a Jira instance and the SMTP server via man-in-the-middle (MITM) vulnerability.

Vendors
atlassian
Products
jira, jira data center, jira server, jira software data center
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.