6.5

CVE-2020-24618

In JetBrains YouTrack versions before 2020.3.4313, 2020.2.11008, 2020.1.11011, 2019.1.65514, 2019.2.65515, and 2019.3.65516, an attacker can retrieve an issue description without appropriate access.

Data is provided by the National Vulnerability Database (NVD)
JetBrainsYouTrack Version < 2019.1.65514
JetBrainsYouTrack Version >= 2019.2.0 < 2019.2.65515
JetBrainsYouTrack Version >= 2019.3 < 2019.3.65516
JetBrainsYouTrack Version >= 2020.1 < 2020.1.11011
JetBrainsYouTrack Version >= 2020.2 < 2020.2.11008
JetBrainsYouTrack Version >= 2020.3 < 2020.3.4313
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0% 0.001
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:P/I:N/A:N