PromptRiskDBThreat intelligence atlas

CVE-2023-22515 - Atlassian Confluence Data Center and Server

AI Vulnerability Context

Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited a previously unknown vulnerability in publicly accessible Confluence Data Center and Server instances to create unauthorized Confluence administrator accounts and access Confluence instances. Atlassian Cloud sites are not affected by this vulnerability. If your Confluence site is accessed via an...

Overview

A source-backed snapshot of this vulnerability.

Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited a previously unknown vulnerability in publicly accessible Confluence Data Center and Server instances to create unauthorized Confluence administrator accounts and access Confluence instances.

Atlassian Cloud sites are not affected by this vulnerability. If your Confluence site is accessed via an atlassian.net domain, it is hosted by Atlassian and is not vulnerable to this issue.

CISA KEVyesWhether CISA lists this as exploited.
Techniques0AI attack methods connected to this vulnerability.
Case studies0Examples where this vulnerability is mentioned.

Vulnerability status

How serious this vulnerability is and whether it is known to be exploited.

CISA KEVCRITICAL
CVE ID
CVE-2023-22515
Vendor/project
Atlassian
Product
Confluence Data Center and Server
Vulnerability name
Atlassian Confluence Data Center and Server Broken Access Control Vulnerability
Date added
2023-10-05
Due date
2023-10-13
Known ransomware campaign use
Known
CVSS v3
9.8

Exploit context

What the vulnerability is about.

Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited a previously unknown vulnerability in publicly accessible Confluence Data Center and Server instances to create unauthorized Confluence administrator accounts and access Confluence instances.

Atlassian Cloud sites are not affected by this vulnerability. If your Confluence site is accessed via an atlassian.net domain, it is hosted by Atlassian and is not vulnerable to this issue.

Source evidence

Original public records and references for this page.

Original source

Original source links

Open the public records and source datasets used for this page.