Summary:
Australian software company Atlassian has taken swift action by releasing emergency security updates to address a critical zero-day vulnerability in its Confluence Data Center and Server software. This vulnerability, tracked as CVE-2023-22515, has been actively exploited in attacks. The vulnerability allows external attackers to exploit a previously unknown flaw in publicly accessible Confluence Data Center and Server instances. They can create unauthorized Confluence administrator accounts and gain access to these instances. It's important to note that Atlassian Cloud sites are not affected by this vulnerability.[/subscribe_to_unlock_form]
Summary:
Australian software company Atlassian has taken swift action by releasing emergency security updates to address a critical zero-day vulnerability in its Confluence Data Center and Server software. This vulnerability, tracked as CVE-2023-22515, has been actively exploited in attacks. The vulnerability allows external attackers to exploit a previously unknown flaw in publicly accessible Confluence Data Center and Server instances. They can create unauthorized Confluence administrator accounts and gain access to these instances. It's important to note that Atlassian Cloud sites are not affected by this vulnerability.[emaillocker id="1283"]
This privilege escalation flaw affects Confluence Data Center and Server versions 8.0.0 and later. What makes it particularly concerning is that it can be remotely exploited with low complexity, and it doesn't require user interaction.
Recommendations:
References:
The following reports contain further technical details:
[/emaillocker]