Rewterz
Rewterz Threat Advisory – CVE-2023-22523 – Atlassian Assets Discovery Cloud and Data Center Vulnerability
December 11, 2023
Rewterz
Rewterz Threat Advisory – CVE-2023-22524 – Atlassian Companion for Mac Vulnerability
December 11, 2023

Rewterz Threat Advisory – CVE-2023-22522 – Atlassian Confluence Data Center and Server Vulnerability

Severity

High

Analysis Summary

CVE-2023-22522

Atlassian Confluence Data Center and Confluence Server could allow a remote authenticated attacker to execute arbitrary code on the system, caused by a template injection flaw. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.

Impact

  • Code Execution

Indicators Of Compromise

CVE

  • CVE-2023-22522

Affected Vendors

Atlassian

Affected Products

  • Atlassian Confluence Server 8.0.0
  • Atlassian Confluence Data Center 8.0.0
  • Atlassian Confluence Server 8.6.0
  • Atlassian Confluence Data Center 8.6.0

Remediation

Refer to Atlassian Security Advisory for patch, upgrade or suggested workaround information.

Atlassian Security Advisory