Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-14181 PoC — Atlassian Jira 信息泄露漏洞

Source
Associated Vulnerability
Title:Atlassian Jira 信息泄露漏洞 (CVE-2020-14181)
Description:Affected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Information Disclosure vulnerability in the /ViewUserHover.jspa endpoint. The affected versions are before version 7.13.6, from version 8.0.0 before 8.5.7, and from version 8.6.0 before 8.12.0.
Description
Poc for CVE-2020-14181
Readme
# CVE-2020-14181
Poc for CVE-2020-14181

Affected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Information Disclosure vulnerability in the /ViewUserHover.jspa endpoint. This vulnerability was discovered by Mikhail Klyuchnikov of Positive Technologies.

POC For CVE-2020-1481 - Jira Username Enumerator/Validator

Usage: python3 cve-2020-14181.py -u 'https://{vulnerable-url}' -w '/path/to/wordlist' -o '/path/to/outfile'
File Snapshot

[4.0K] /data/pocs/cdeaf67d56c0a0af3f8ae580fbbbf06f84332084 ├── [1.8K] CVE-2020-14181.py └── [ 482] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →