Loading HuntDB...

Atlassian Confluence Server and Data Center Path Traversal Vulnerability

Added Nov. 3, 2021 Due May 3, 2022 CVE-2019-3398
Overdue Atlassian / Confluence Server and Data Center CWE-22

Description

Atlassian Confluence Server and Data Center contain a path traversal vulnerability in the downloadallattachments resource that may allow a privileged, remote attacker to write files. Exploitation can lead to remote code execution.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
6 months ago