Cato Protects Against Atlassian Confluence Server Exploits (CVE-2023-22515)
ID: 96896574-d484-539d-9780-0dc02fef0556
STIX ID: report--96896574-d484-539d-9780-0dc02fef0556
Feed Name: Cato Networks
Threat Score
Atlassian disclosed a critical remote privilege-escalation vulnerability in on-premise Confluence Server/Data Center enabling attackers to create admin accounts via the "/setup/" endpoint; while no public PoC existed at disclosure, Atlassian reported incidents of exploitation and Cato observed and blocked attempts, deploying signatures and recommending restricting admin endpoint access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
