CVE-2020-29451: Medium severity Atlassian Data Center vulnerability
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to enumerate Jira projects via an Information Disclosure vulnerability in the Jira Projects plugin report page. The affected versions are before version 8.5.11, from version 8.6.0 before 8.13.3, and from version 8.14.0 before 8.14.1.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-29451.
What is the severity of CVE-2020-29451?
The severity of CVE-2020-29451 is medium.
How does the vulnerability in Atlassian Jira Server and Data Center allow remote attackers to enumerate Jira projects?
The vulnerability allows remote attackers to enumerate Jira projects via an Information Disclosure vulnerability in the Jira Projects plugin report page.
Which versions of Atlassian Jira Server and Data Center are affected by this vulnerability?
The affected versions of Atlassian Jira Server and Data Center are before version 8.5.11, from version 8.6.0 before 8.13.3, and from version 8.14.0 before 8.14.1.
Is there a fix available for CVE-2020-29451?
Yes, the fix for CVE-2020-29451 is available in versions 8.5.11, 8.13.3, and 8.14.1 of Atlassian Jira Server and Data Center.