ZeroHour

CVE-2021-43948

CVSS 3.1
4.3 medium
EPSS
<1%p56
Published
()
Modified
Description

Affected versions of Atlassian Jira Service Management Server and Data Center allow authenticated remote attackers to view the names of private objects via an Improper Authorization vulnerability in the "Move objects" feature. The affected versions are before version 4.21.0.

Vendors
atlassian
Products
jira service management
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.