CVE-2019-20410
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD
Description
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to view sensitive information via an Information Disclosure vulnerability in the comment restriction feature. The affected versions are before version 7.6.17, from version 7.7.0 before 7.13.9, and from version 8.0.0 before 8.4.2.
Affected (6)
Products: Atlassian: Jira, Jira Data Center, Jira Server, Jira Software Data Center
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.6.17 | |
| From 7.7.0 to 7.13.9 | |
| From 7.7.0 to 7.13.9 | |
| Before 7.6.17 |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.