RaqibCTI
CVE

CVE-2023-22518

P1⬤ KNOWN RANSOMWARE USE
Atlassian Confluence Data Center and Server Improper Authorization Vulnerability
Atlassian · Confluence Data Center and Server
Date added (CISA)
2023-11-07
Remediation due
2023-11-28
Known ransomware use
Yes
Remediation priority
P1known ransomware use · past CISA due date

Description

Atlassian Confluence Data Center and Server contain an improper authorization vulnerability that can result in significant data loss when exploited by an unauthenticated attacker. There is no impact on confidentiality since the attacker cannot exfiltrate any data.

Source: NVD ↗ · CISA KEV Catalog ↗