CVE-2019-20898

Affected versions of Atlassian Jira Server and Data Center allow remote attackers to access sensitive information without being authenticated in the Global permissions screen. The affected versions are before version 8.8.0.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:atlassian:jira:*:*:*:*:*:*:*:*
cpe:2.3:a:atlassian:jira_software_data_center:*:*:*:*:*:*:*:*

Information

Published : 2020-07-13 01:15

Updated : 2021-07-21 11:39


NVD link : CVE-2019-20898

Mitre link : CVE-2019-20898


JSON object : View

Products Affected

atlassian

  • jira
  • jira_software_data_center
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor