ZeroHour

CVE-2020-4029

CVSS 3.1
4.3 medium
EPSS
1%p72
Published
()
Modified
Description

The /rest/project-templates/1.0/createshared resource in Atlassian Jira Server and Data Center before version 8.5.5, from 8.6.0 before 8.7.2, and from 8.8.0 before 8.8.1 allows remote attackers to enumerate project names via an improper authorization vulnerability.

Vendors
atlassian
Products
jira, jira data center, jira server, jira software data center
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.