CVE-2020-14177
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Regex-based Denial of Service (DoS) vulnerability in JQL version searching. The affected versions are before version 7.13.16; from version 7.14.0 before 8.5.7; from version 8.6.0 before 8.10.2; and from version 8.11.0 before 8.11.1.
Las versiones afectadas de Atlassian Jira Server y Data Center, permiten a atacantes remotos afectar la disponibilidad de la aplicación por medio de una vulnerabilidad de Denegación de Servicio (DoS) basada en Regex en la búsqueda de versiones JQL. Las versiones afectadas son anteriores a la versión 7.13.16; desde la versión 7.14.0 anteriores a 8.5.7; desde la versión 8.6.0 anteriores a 8.10.2; y desde la versión 8.11.0 anteriores a 8.11.1
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-06-16 CVE Reserved
- 2020-09-21 CVE Published
- 2023-03-07 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://jira.atlassian.com/browse/JRASERVER-71388 | 2022-03-28 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Atlassian Search vendor "Atlassian" | Jira Server Search vendor "Atlassian" for product "Jira Server" | < 7.13.16 Search vendor "Atlassian" for product "Jira Server" and version " < 7.13.16" | - |
Affected
| ||||||
Atlassian Search vendor "Atlassian" | Jira Server Search vendor "Atlassian" for product "Jira Server" | >= 7.14.0 < 8.5.7 Search vendor "Atlassian" for product "Jira Server" and version " >= 7.14.0 < 8.5.7" | - |
Affected
| ||||||
Atlassian Search vendor "Atlassian" | Jira Server Search vendor "Atlassian" for product "Jira Server" | >= 8.6.0 < 8.10.2 Search vendor "Atlassian" for product "Jira Server" and version " >= 8.6.0 < 8.10.2" | - |
Affected
| ||||||
Atlassian Search vendor "Atlassian" | Jira Server Search vendor "Atlassian" for product "Jira Server" | >= 8.11.0 < 8.11.1 Search vendor "Atlassian" for product "Jira Server" and version " >= 8.11.0 < 8.11.1" | - |
Affected
|