Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-14181 PoC — Atlassian Jira 信息泄露漏洞

Source
Associated Vulnerability
Title:Atlassian Jira 信息泄露漏洞 (CVE-2020-14181)
Description:Atlassian Jira是澳大利亚Atlassian公司的一套缺陷跟踪管理系统。该系统主要用于对工作中各类问题、缺陷进行跟踪管理。 Atlassian Jira Server and Data Center 7.13.6版本之前存在安全漏洞,攻击者可利用该漏洞枚举用户信息。
Description
Poc for CVE-2020-14181
Readme
# CVE-2020-14181
Poc for CVE-2020-14181

Affected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Information Disclosure vulnerability in the /ViewUserHover.jspa endpoint. This vulnerability was discovered by Mikhail Klyuchnikov of Positive Technologies.

POC For CVE-2020-1481 - Jira Username Enumerator/Validator

Usage: python3 cve-2020-14181.py -u 'https://{vulnerable-url}' -w '/path/to/wordlist' -o '/path/to/outfile'
File Snapshot

[4.0K] /data/pocs/cdeaf67d56c0a0af3f8ae580fbbbf06f84332084 ├── [1.8K] CVE-2020-14181.py └── [ 482] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.