Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pvrh-7mfr-7cr8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Versions before 8.9.1, Various resources in Jira responded with a 404 instead of redirecting unauthenticated users to the login page, in some situations this may have allowed unauthorised attackers to determine if certain resources exist or not through an Information Disclosure vulnerability.

Versions before 8.9.1, Various resources in Jira responded with a 404 instead of redirecting unauthenticated users to the login page, in some situations this may have allowed unauthorised attackers to determine if certain resources exist or not through an Information Disclosure vulnerability.

EPSS

Процентиль: 63%
0.00455
Низкий

Связанные уязвимости

CVSS3: 5.3
nvd
почти 5 лет назад

Versions before 8.9.1, Various resources in Jira responded with a 404 instead of redirecting unauthenticated users to the login page, in some situations this may have allowed unauthorised attackers to determine if certain resources exist or not through an Information Disclosure vulnerability.

EPSS

Процентиль: 63%
0.00455
Низкий