CVE-2021-26085

5.3MEDIUM

Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a Pre-Authorization Arbitrary File Read vulnerability in the /s/ endpoint. The affected version

게시됨: 8/3/2021업데이트됨: 10/24/2025

CISA 알려진 악용 취약점

Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a pre-authorization arbitrary file read vulnerability in the /s/ endpoint.

필요한 조치:

Apply updates per vendor instructions.

마감일:

2022-04-18

알려진 랜섬웨어 사용

설명

Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a Pre-Authorization Arbitrary File Read vulnerability in the /s/ endpoint. The affected versions are before version 7.4.10, and from version 7.5.0 before 7.12.3.

AI 분석AI 기반

영향받는 제품

atlassianconfluence_data_center
atlassianconfluence_data_center
atlassianconfluence_server
atlassianconfluence_server

사용 가능한 익스플로잇 (1)

참조