Jira Server and Data Center Information Disclosure Vulnerability in Project Enumeration

Jira Server and Data Center Information Disclosure Vulnerability in Project Enumeration

CVE-2020-29451 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Affected versions of Atlassian Jira Server and Data Center allow remote attackers to enumerate Jira projects via an Information Disclosure vulnerability in the Jira Projects plugin report page. The affected versions are before version 8.5.11, from version 8.6.0 before 8.13.3, and from version 8.14.0 before 8.14.1.

Learn more about our Cis Benchmark Audit For Server Software.