secure/ConfigureReleaseNote.jspa in Atlassian JIRA 3.6.2-#156 allows remote malicious users to obtain sensitive information via unspecified manipulations of the projectId parameter, which displays the installation path and other system information in an error message.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
atlassian jira 3.6.2_156 |