Atlassian Confluence Server 漏洞列表
共找到 4 个与 Atlassian Confluence Server 相关的漏洞
📅 加载漏洞趋势中...
-
CVE-2023-22518: Atlassian Confluence Server - Improper Authorization POC
All versions of Confluence Data Center and Server are affected by this unexploited vulnerability. There is no impact to confidentiality as an attacker cannot exfiltrate any instance data. Atlassian Cloud sites are not affected by this vulnerability. If your Confluence site is accessed via an atlassian.net domain, it is hosted by Atlassian and is not vulnerable to this issue. Fofa: app="ATLASSIAN-Confluence" ZoomEye: app:"Atlassian Confluence" Censys: app:"Atlassian Confluence" Hunter: app.name="Confluence" -
CVE-2019-3396: Atlassian Confluence Server - Path Traversal POC
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from version 6.7.0 before 6.12.3 (the fixed version for 6.12.x), from version 6.13.0 before 6.13.3 (the fixed version for 6.13.x), and from version 6.14.0 before 6.14.2 (the fixed version for 6.14.x), allows remote attackers to achieve path traversal and remote code execution on a Confluence Server or Data Center instance via server-side template injection. -
CVE-2021-26085: Atlassian Confluence Server - Local File Inclusion POC
Atlassian Confluence Server allows remote attackers to view restricted resources via local file inclusion in the /s/ endpoint. -
CVE-2023-22518: Atlassian Confluence Server - Improper Authorization POC
All versions of Confluence Data Center and Server are affected by this unexploited vulnerability. There is no impact to confidentiality as an attacker cannot exfiltrate any instance data. Atlassian Cloud sites are not affected by this vulnerability. If your Confluence site is accessed via an atlassian.net domain, it is hosted by Atlassian and is not vulnerable to this issue.