Threat intelligence report · CISA KEV

CVE-2023-22518: Atlassian Confluence Data Center and Server Improper Authorization Vulnerability

Atlassian Confluence Data Center and Server contain an improper authorization vulnerability that can result in significant data loss when exploited by an unauthenticated attacker. There is no impact on confidentiality since the attacker cannot exfiltrate any data. Required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

· high severity · unattributed attribution

Evidence and provenance

Original source
CISA KEV report ↗
Published
2023-11-07T00:00:00Z
Confidence basis
No actor match
Record ID
35899cfc1a407bfe1861

Vulnerabilities

CVE-2023-22518

Use and citation

Verify the original report before making operational decisions. Cite this permanent page together with the original source, publication date, confidence level, and review status.