CVE-2019-20410

Description

Affected versions of Atlassian Jira Server and Data Center allow remote attackers to view sensitive information via an Information Disclosure vulnerability in the comment restriction feature. The affected versions are before version 7.6.17, from version 7.7.0 before 7.13.9, and from version 8.0.0 before 8.4.2.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.331

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Atlassian Jira 8.4.1Windows
Vulnerabilities CVE-2019-20098,CVE-2019-20099,CVE-2019-20410,CVE-2019-20411 are affected in Atlassian Jira Core Data Center 7.12.5Windows
Multiple Vulnerabilities are affected in Atlassian Jira Core Data Center 8.4.1Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234