Added |
CPE Configuration |
|
OR
*cpe:2.3:a:atlassian:confluence_data_center:*:*:*:*:*:*:*:* versions from (including) 1.3 up to (excluding) 7.4.17
*cpe:2.3:a:atlassian:confluence_data_center:*:*:*:*:*:*:*:* versions from (including) 7.13.0 up to (excluding) 7.13.7
*cpe:2.3:a:atlassian:confluence_data_center:*:*:*:*:*:*:*:* versions from (including) 7.14.0 up to (excluding) 7.14.3
*cpe:2.3:a:atlassian:confluence_data_center:*:*:*:*:*:*:*:* versions from (including) 7.15.0 up to (excluding) 7.15.2
*cpe:2.3:a:atlassian:confluence_data_center:*:*:*:*:*:*:*:* versions from (including) 7.16.0 up to (excluding) 7.16.4
*cpe:2.3:a:atlassian:confluence_data_center:*:*:*:*:*:*:*:* versions from (including) 7.17.0 up to (excluding) 7.17.4
*cpe:2.3:a:atlassian:confluence_data_center:7.18.0:*:*:*:*:*:*:*
*cpe:2.3:a:atlassian:confluence_server:*:*:*:*:*:*:*:* versions from (including) 1.3 up to (excluding) 7.4.17
*cpe:2.3:a:atlassian:confluence_server:*:*:*:*:*:*:*:* versions from (including) 7.13.0 up to (excluding) 7.13.7
*cpe:2.3:a:atlassian:confluence_server:*:*:*:*:*:*:*:* versions from (including) 7.14.0 up to (excluding) 7.14.3
*cpe:2.3:a:atlassian:confluence_server:*:*:*:*:*:*:*:* versions from (including) 7.15.0 up to (excluding) 7.15.2
*cpe:2.3:a:atlassian:confluence_server:*:*:*:*:*:*:*:* versions from (including) 7.16.0 up to (excluding) 7.16.4
*cpe:2.3:a:atlassian:confluence_server:*:*:*:*:*:*:*:* versions from (including) 7.17.0 up to (excluding) 7.17.4
*cpe:2.3:a:atlassian:confluence_server:7.18.0:*:*:*:*:*:*:*
|
Added |
CVSS V2 |
|
NIST (AV:N/AC:L/Au:N/C:P/I:P/A:P)
|
Added |
CVSS V3.1 |
|
NIST AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
Added |
CWE |
|
NIST CWE-74
|
Changed |
Reference Type |
http://packetstormsecurity.com/files/167430/Confluence-OGNL-Injection-Remote-Code-Execution.html No Types Assigned
|
http://packetstormsecurity.com/files/167430/Confluence-OGNL-Injection-Remote-Code-Execution.html Exploit, Third Party Advisory, VDB Entry
|
Changed |
Reference Type |
http://packetstormsecurity.com/files/167431/Through-The-Wire-CVE-2022-26134-Confluence-Proof-Of-Concept.html No Types Assigned
|
http://packetstormsecurity.com/files/167431/Through-The-Wire-CVE-2022-26134-Confluence-Proof-Of-Concept.html Third Party Advisory, VDB Entry
|
Changed |
Reference Type |
http://packetstormsecurity.com/files/167432/Confluence-OGNL-Injection-Proof-Of-Concept.html No Types Assigned
|
http://packetstormsecurity.com/files/167432/Confluence-OGNL-Injection-Proof-Of-Concept.html Third Party Advisory, VDB Entry
|
Changed |
Reference Type |
http://packetstormsecurity.com/files/167449/Atlassian-Confluence-Namespace-OGNL-Injection.html No Types Assigned
|
http://packetstormsecurity.com/files/167449/Atlassian-Confluence-Namespace-OGNL-Injection.html Exploit, Third Party Advisory, VDB Entry
|
Changed |
Reference Type |
https://jira.atlassian.com/browse/CONFSERVER-79016 No Types Assigned
|
https://jira.atlassian.com/browse/CONFSERVER-79016 Patch, Vendor Advisory
|