logo

Cato Protects Against Atlassian Confluence Server Exploits (CVE-2023-22515)

ID: 96896574-d484-539d-9780-0dc02fef0556

STIX ID: report--96896574-d484-539d-9780-0dc02fef0556

Feed Name: Cato Networks

Threat Score
90/100

Date Published: 2023-10-06

Date Updated: 2026-07-23

Author: Matan Mittelman

...
...

Atlassian disclosed a critical remote privilege-escalation vulnerability in on-premise Confluence Server/Data Center enabling attackers to create admin accounts via the "/setup/" endpoint; while no public PoC existed at disclosure, Atlassian reported incidents of exploitation and Cato observed and blocked attempts, deploying signatures and recommending restricting admin endpoint access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.