Skip to content

Remote Code Execution on Confluence Servers : CVE-2021-26084

Notifications You must be signed in to change notification settings

Vulnmachines/Confluence_CVE-2021-26084

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

12 Commits
 
 
 
 
 
 

Repository files navigation

Confluence_CVE-2021-26084

Remote Code Execution on Confluence Servers : CVE-2021-26084

PoC

image

Confluence Possible exploit endpoints

https://<REDACTED>/login
https://<REDACTED>/pages/templates2/viewpagetemplate.action
https://<REDACTED>/template/custom/content-editor
https://<REDACTED>/templates/editor-preload-container
https://<REDACTED>/pages/createpage-entervariables.action 

Video : Video

Note : I have tested on version 7.12.4.

Author

Vulnmachines

About

Remote Code Execution on Confluence Servers : CVE-2021-26084

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published