trickest / cve

Gather and update all available and newest CVEs with their PoC.

Home Page:https://trickest.com

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

CVE-2022-26134

mhmdiaa opened this issue · comments

CVE-2022-26134

CVE-2022-26134




Description

In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server or Data Center instance. The affected versions are from 1.3.0 before 7.4.17, from 7.13.0 before 7.13.7, from 7.14.0 before 7.14.3, from 7.15.0 before 7.15.2, from 7.16.0 before 7.16.4, from 7.17.0 before 7.17.4, and from 7.18.0 before 7.18.1.

POC

Reference

Github