CVE-2021-41305: High severity atlassian jira vulnerability
Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to view the names of private projects and filters via an Insecure Direct Object References (IDOR) vulnerability in the Average Number of Times in Status Gadget. The affected versions are before version 8.13.12..
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-41305?
The severity of CVE-2021-41305 is high with a CVSS score of 7.5.
Which versions of Atlassian Jira Server and Data Center are affected by CVE-2021-41305?
Versions before 8.13.12 of Atlassian Jira Server and Data Center are affected by CVE-2021-41305.
What is the vulnerability in Atlassian Jira Server and Data Center called?
The vulnerability in Atlassian Jira Server and Data Center is called an Insecure Direct Object References (IDOR) vulnerability in the Average Number of Times in Status Gadget.
What can anonymous remote attackers do with CVE-2021-41305?
Anonymous remote attackers can view the names of private projects and filters with CVE-2021-41305.
How can I fix CVE-2021-41305 in Atlassian Jira Server and Data Center?
To fix CVE-2021-41305, you should upgrade to version 8.13.12 or later of Atlassian Jira Server and Data Center.