Confluence-CVE-2022-26134

Description

Confluence unauthorize remote code execution vulnerability : #CVE-2022-26134 Confluence is a web-based corporate wiki developed by Australian software company Atlassian. On June 02, 2022 Atlassian released a security advisory for their Confluence Server and Data Center applications, highlighting a critical severity unauthenticated remote code execution vulnerability. The OGNL #injection #vulnerability allows an unauthenticated user to execute arbitrary code on a Confluence Server or Data Center instance.

PoC

Video PoC

Follow us