CVE-2020-14179
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
3Exploited in Wild
-Decision
Descriptions
Affected versions of Atlassian Jira Server and Data Center allow remote, unauthenticated attackers to view custom field names and custom SLA names via an Information Disclosure vulnerability in the /secure/QueryComponent!Default.jspa endpoint. The affected versions are before version 8.5.8, and from version 8.6.0 before 8.11.1.
Las versiones afectadas de Atlassian Jira Server y Data Center, permiten a atacantes remotos no autenticados visualizar nombres de campos personalizados y nombres de SLA personalizados por medio de una vulnerabilidad de Divulgación de Información en el endpoint /secure/QueryComponent!Default.jspa. Las versiones afectadas son las anteriores a la versión 8.5.8 y desde la versión 8.6.0 anteriores a 8.11.1
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-06-16 CVE Reserved
- 2020-09-21 CVE Published
- 2021-01-18 First Exploit
- 2024-09-16 CVE Updated
- 2024-10-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (4)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://github.com/c0brabaghdad1/CVE-2020-14179 | 2021-01-18 | |
https://github.com/mrnazu/CVE-2020-14179 | 2023-12-03 | |
https://github.com/0romos/CVE-2020-14179 | 2024-05-24 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://jira.atlassian.com/browse/JRASERVER-71536 | 2022-07-27 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Atlassian Search vendor "Atlassian" | Jira Data Center Search vendor "Atlassian" for product "Jira Data Center" | < 8.5.8 Search vendor "Atlassian" for product "Jira Data Center" and version " < 8.5.8" | - |
Affected
| ||||||
Atlassian Search vendor "Atlassian" | Jira Data Center Search vendor "Atlassian" for product "Jira Data Center" | >= 8.6.0 < 8.11.1 Search vendor "Atlassian" for product "Jira Data Center" and version " >= 8.6.0 < 8.11.1" | - |
Affected
| ||||||
Atlassian Search vendor "Atlassian" | Jira Server Search vendor "Atlassian" for product "Jira Server" | < 8.5.8 Search vendor "Atlassian" for product "Jira Server" and version " < 8.5.8" | - |
Affected
| ||||||
Atlassian Search vendor "Atlassian" | Jira Server Search vendor "Atlassian" for product "Jira Server" | >= 8.6.0 < 8.11.1 Search vendor "Atlassian" for product "Jira Server" and version " >= 8.6.0 < 8.11.1" | - |
Affected
|