Description
An information disclosure vulnerability in Jira allows an unauthenticated user to enumerate users via /ViewUserHover.jspa endpoint.
Remediation
Upgrade to the latest version of Jira
References
Related Vulnerabilities
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-5097)
WordPress Plugin MP3-jPlayer Information Disclosure (2.3.2)
WordPress Plugin Download Shortcode Arbitrary File Disclosure (0.1)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-5739)