CVE-2019-20418Atlassian Jira Server vulnerability

3 documents3 sources
Severity
6.5MEDIUMNVD
EPSS
0.4%
top 38.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 3
Latest updateMay 24

Description

Affected versions of Atlassian Jira Server and Data Center allow remote attackers to prevent users from accessing the instance via an Application Denial of Service vulnerability in the /rendering/wiki endpoint. The affected versions are before version 8.8.0.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

CVEListV5atlassian/jira_serverunspecified8.8.0
NVDatlassian/jira< 8.8.0

🔴Vulnerability Details

2
GHSA
GHSA-g464-48x7-5h2h: Affected versions of Atlassian Jira Server and Data Center allow remote attackers to prevent users from accessing the instance via an Application Deni2022-05-24
CVEList
CVE-2019-20418: Affected versions of Atlassian Jira Server and Data Center allow remote attackers to prevent users from accessing the instance via an Application Deni2020-07-03
CVE-2019-20418 — Atlassian Jira Server vulnerability | cvebase