Atlassian Confluence Server and Data Center Remote Code Execution (CVE-2023-22527) – Cato’s Analysis and Mitigation
ID: 2b3d08c2-1eb7-50e3-83fc-7ee48ae861d3
STIX ID: report--2b3d08c2-1eb7-50e3-83fc-7ee48ae861d3
Feed Name: Cato Networks
Threat Score
Atlassian disclosed a critical CVE in Confluence Server/Data Center (CVSS 10) that enables unauthenticated remote code execution via unrestricted template access and OGNL/template injection. Affected 8.0.x through 8.5.3 require immediate upgrade as there is no workaround; public PoCs and observed exploitation attempts were reported and Cato deployed IPS signatures to block attacks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
