secure/ConfigureReleaseNote.jspa in Atlassian JIRA 3.6.2-#156 allows remote attackers to obtain sensitive information via unspecified manipulations of the projectId parameter, which displays the installation path and other system information in an error message.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jira | Atlassian | 3.6.2_156 (including) | 3.6.2_156 (including) |