Exploitation Of Atlassian Confluence RCE Vulnerability
ID: cb711fda-d8aa-5640-aa9b-4c9a97b7b041
STIX ID: report--cb711fda-d8aa-5640-aa9b-4c9a97b7b041
Feed Name: Cyble Blog
This report details a critical OGNL template-injection RCE (CVE-2023-22527) affecting outdated Atlassian Confluence Server and Data Center releases (notably 8.0.x–8.5.3), explains technical exploitation (including bypasses to an OGNL length restriction), documents active scanning/exploitation observed by Cyble with numerous internet-exposed instances and IoCs, and recommends immediate patching (Confluence Data Center and Server 8.5.5 LTS and Confluence Data Center 8.7.2) plus security hygiene measures.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
