-
Type:
Bug
-
Resolution: Fixed
-
Priority:
Low
-
Affects Version/s: 7.12.0, 7.13.0, 7.13.1
-
Component/s: Data Center - Archiving, Project - Actions
-
7.12
-
Severity 2 - Major
The BrowseProjects.jspa resource in Jira before version 7.13.2, and from version 8.0.0 before version 8.0.2 allows remote attackers to see information for archived projects through a missing authorisation check.
- mentioned in
-
Page Loading...