Description
secure/ConfigureReleaseNote.jspa in Atlassian JIRA 3.6.2-#156 allows remote attackers to obtain sensitive information via unspecified manipulations of the projectId parameter, which displays the installation path and other system information in an error message.
Remediation
References
Related Vulnerabilities
MySQL Improper Validation of Array Index Vulnerability (CVE-2022-21310)
SharePoint Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-1892)
MyBB CVE-2011-5133 Vulnerability (CVE-2011-5133)
MySQL CVE-2023-22078 Vulnerability (CVE-2023-22078)
Django Improper Input Validation Vulnerability (CVE-2011-4136)