Atlassian Confluence Information Disclosure Vulnerability
BID:62015
Info
Atlassian Confluence Information Disclosure Vulnerability
| Bugtraq ID: | 62015 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 28 2011 12:00AM |
| Updated: | Nov 28 2011 12:00AM |
| Credit: | Outscale |
| Vulnerable: |
Atlassian Confluence 4.3.7 Atlassian Confluence 4.3.5 Atlassian Confluence 4.1.9 Atlassian Confluence 4.1.8 Atlassian Confluence 4.1.7 Atlassian Confluence 3.5.6 Atlassian Confluence 3.4.9 Atlassian Confluence 3.4.8 Atlassian Confluence 3.4.6 Atlassian Confluence 3.4.5 |
| Not Vulnerable: | |
Discussion
Atlassian Confluence Information Disclosure Vulnerability
Atlassian Confluence is prone to an information-disclosure vulnerability.
Successful exploits of this issue lead to disclosure of sensitive information which may aid in launching further attacks.
Atlassian Confluence is prone to an information-disclosure vulnerability.
Successful exploits of this issue lead to disclosure of sensitive information which may aid in launching further attacks.
Exploit / POC
Atlassian Confluence Information Disclosure Vulnerability
An attacker can exploit this issue using a web browser.
An attacker can exploit this issue using a web browser.
Solution / Fix
Atlassian Confluence Information Disclosure Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Atlassian Confluence Information Disclosure Vulnerability
References:
References:
- Atlassian Confluence Web Site (Atlassian)
- Do not show registered users in quick search to anonymous users (Atlassian)