S4E just found a high top 10 tcp port service scan
medium·Product Based Web Vulnerabilities·Updated Jan 8, 2024

CVE-2020-14181 Scanner

CVE-2020-14181 scanner - Directory Traversal vulnerability in Atlassian Jira Server and Data Center

Est. Time~30 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2020-14181
5.3
CVSS

Affected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Information Disclosure vulnerability in the /ViewUserHover.jspa endpoint. The affected versions are before version 7.13.6, from version 8.0.0 before 8.5.7, and from version 8.6.0 before 8.12.0.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
Jira Serverby Atlassian
AFFECTED< 7.13.6SAFE ✓≥ 7.13.6
Updated Aug 21, 2026View on NVD →
Detail

Atlassian Jira Server and Data Center are popular tools used by businesses to manage projects and track issues. These products provide a collaborative platform that enables teams to work together and deliver high-quality results. Jira Server and Data Center are widely used by companies of all sizes, including software development teams, IT departments, and project management teams.

One of the vulnerabilities that have been detected in Atlassian Jira Server and Data Center is CVE-2020-14181. This vulnerability allows an unauthorized user to enumerate users via an information disclosure in the /ViewUserHover.jspa endpoint. The affected versions are before version 7.13.6, from version 8.0.0 before 8.5.7, and from version 8.6.0 before 8.12.0. This vulnerability can give hackers an easy way to obtain sensitive information such as usernames, email addresses, and internal system URLs.

When this vulnerability is exploited, it can lead to serious consequences for businesses. Hackers can use the obtained information to attack the system, steal sensitive data, or create fake accounts. Businesses can also be at risk of financial loss due to the exposure of confidential data. The exploitation of this vulnerability can also damage the company's reputation and lead to loss of trust from customers.

At s4e.io, our pro features provide businesses with timely notifications of vulnerabilities like CVE-2020-14181. Our platform enables businesses to scan their digital assets, identify vulnerabilities, and stay up to date on the latest threats. With s4e.io, businesses can rest assured that their digital assets are protected against known vulnerabilities.

 

REFERENCES

Solution Advice

To protect against this vulnerability, businesses can take the following precautions:

  • Apply the recommended updates as soon as possible
  • Limit access to sensitive information
  • Monitor system activity regularly
  • Conduct regular security audits
  • Implement multi-factor authentication

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.