CVE-2020-14174
CVE-2020-14174
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 1.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
13 jul 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to view titles of a private project via an Insecure Direct Object References (IDOR) vulnerability in the Administration Permission Helper. The affected versions are before version 7.13.6, from version 8.0.0 before 8.5.7, from version 8.6.0 before 8.9.2, and from version 8.10.0 before 8.10.1.
Productos afectados
Atlassian · Jira Server¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →