by @jakaba
20 May 2024

Authentication Bypass in Confluence (CVE-2023-22518)

by @jakaba
20 May 2024

Authentication Bypass in Confluence (CVE-2023-22518)

CVEs

9.8 Critical Severity

Apps

7.19.14.*
7.19.21.*
7.19.22.*
7.19.20.*
7.19.19.*
7.19.18.*
7.19.17.*
7.19.16.*
7.19.9.*
7.17.5.*
7.19.11.*
7.19.26.*
7.19.27.*
7.19.23.*
7.19.28.*
7.19.15.*
7.19.24.*
7.19.25.*
7.19.30.*
7.19.21.*

Screenshots from the blog posts

images/clwev1gmnl9dy1hmu4z3jdl2u.jpgimages/clwev1gmnl9dy1hmu4z3jdl2u.jpg

Summary

CVE-2023-22518 is an Improper Authorization vulnerability in the Confluence Data Center and Server leading to RCE.

Description

users/photos/clj8b3h1k16g10uoihwvzgsxi.png

@jakaba

74 posts

Total vcoins

0

Social media links

Comments (0)