CVE-2019-20419: High severity atlassian data center vulnerability
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to execute arbitrary code via a DLL hijacking vulnerability in Tomcat. The affected versions are before version 8.5.5, and from version 8.6.0 before 8.7.2.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-20419?
CVE-2019-20419 has a critical severity level due to the potential for remote code execution.
How do I fix CVE-2019-20419?
To mitigate CVE-2019-20419, upgrade to version 8.5.5 or later, or between 8.6.0 and 8.7.2 for Atlassian Jira Server and Data Center.
Which versions of Atlassian Jira are affected by CVE-2019-20419?
CVE-2019-20419 affects Atlassian Jira Server and Data Center versions prior to 8.5.5 and versions from 8.6.0 up to, but not including, 8.7.2.
What type of vulnerability is CVE-2019-20419?
CVE-2019-20419 is a DLL hijacking vulnerability that allows remote attackers to execute arbitrary code.
Is there a workaround for CVE-2019-20419?
There is no documented workaround for CVE-2019-20419; upgrading to the patched versions is recommended.