References https://nvd.nist.gov/vuln/detail/CVE-2019-11580 https://confluence.atlassian.com/crowd/crowd-security-advisory-2019-05-22-970260700.html https://jira.atlassian.com/browse/CWD-5388 https://corben.io/blog/19-7-14-atlassian-crowd-rce https://www.tenable.com/blog/cve-2019-11580-proof-of-concept-for-critical-atlassian-crowd-remote-code-execution https://github.com/jas502n/cve-2019-11580 https://www.anquanke.com/post/id/182118 https://www.extrahop.com/resources/detections/cve-2019-11580-atlassian-crowd-exploit https://attackerkb.com/topics/ibknVO2p8H/cve-2019-11580 https://www.4hou.com/posts/4kgk
Related Vulnerabilities金和OA /c6/JHSoft.Web.CostControl/Decompose/AjaxForCenterBudgetDecompose.ashx SQL 注入漏洞PowerJob 存在信息泄露漏洞 (CVE-2025-11580)技嘉科技|Gigabyte Control Center - Improper Access ControlPoCCVE-2026-27826: mcp-atlassian < 0.17.0 - Server-Side Request ForgeryPoChazelcast-management-exposure: Hazelcast Management Center - Configuration Exposure月子会所ERP管理云平台GetCustomerCenterReceiveList存在SQL注入漏洞金財通商務科技|Service Center - Insecure Direct Object Reference用友NC /uapws/service/nc.itf.msgcenter.IMsgCenterWebService SQL 注入漏洞关于NC系统IMsgCenterWebService的sql注入漏洞的安全通告PowerJob /user/list 未授权访问漏洞(CVE-2025-11580)MCP Atlassian 存在SSRF漏洞(CVE-2026-27826)PoCCVE-2026-20079: Cisco Secure Firewall Management Center - Authentication BypassD-Link DNS-ShareCenter /cgi-bin/gui_mgr.cgi 命令执行漏洞(CVE-2026-4204)