CVE-2020-4029
—CVSS 3.1
4.3 medium
EPSS
1%p72
Published
()
Modified
Description
The /rest/project-templates/1.0/createshared resource in Atlassian Jira Server and Data Center before version 8.5.5, from 8.6.0 before 8.7.2, and from 8.8.0 before 8.8.1 allows remote attackers to enumerate project names via an improper authorization vulnerability.
- Vendors
- atlassian
- Products
- jira, jira data center, jira server, jira software data center
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.