CVE-2019-5095

An issue summary information disclosure vulnerability exists in Atlassian Jira Tempo plugin, version 4.10.0. Authenticated users can obtain the summary for issues they do not have permission to view via the Tempo plugin.
References
Link Resource
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0838 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:tempo:tempo:4.10.0:*:*:*:*:jira:*:*

History

No history.

Information

Published : 2019-10-31 20:15

Updated : 2019-11-04 14:48


NVD link : CVE-2019-5095

Mitre link : CVE-2019-5095

CVE.ORG link : CVE-2019-5095


JSON object : View

Products Affected

tempo

  • tempo
CWE
CWE-862

Missing Authorization