CVE-2019-20403
06.02.2020, 03:15
The API in Atlassian Jira Server and Data Center before version 8.6.0 allows remote attackers to determine if a Jira project key exists or not via an information disclosure vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
atlassian | jira_data_center | 7.13.0 ≤ 𝑥 < 8.5.5 |
atlassian | jira_server | 7.13.0 < 𝑥 < 8.5.5 |
𝑥
= Vulnerable software versions