CVE-2020-4015

Publication date

2020-06-01 06:35:31

Family

atlassian

State

PUBLISHED

Description

The /json/fe/activeUserFinder.do resource in Altassian Fisheye and Crucible before version 4.8.1 allows remote attackers to view user user email addresses via a information disclosure vulnerability.