The dashboard gadgets preference resource of the Atlassian gadgets plugin...
Vulnerability Description
The dashboard gadgets preference resource of the Atlassian gadgets plugin used in Jira Server and Jira Data Center before version 8.13.5, and from version 8.14.0 before version 8.15.1 allows remote anonymous attackers to obtain gadget related settings via a missing permissions check.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-36287
Credits & Attribution
No credits recorded in the NVD database.
More from Atlassian
View All →Affected Vendor
Atlassian
View all reports →