Atlassian Confluence SSRF / Remote Code Execution

Discussion in 'News Aggregator' started by Packet Storm, 26 Mar 2019.

  1. Packet Storm

    Packet Storm Guest

    Atlassian Confluence versions 6.6.0 up to 6.6.12, 6.12.0 up to 6.12.3, 6.13.0 up to 6.13.3, and 6.14.0 up to 6.14.2 suffer from a server-side request forgery vulnerability via WebDAV and a remote code execution vulnerability via the Widget Connector macro.

    Continue reading...
     

Share This Page

Loading...