CVE-2023-22518

Vulnerability updated a month ago (2024-11-29T13:48:21.235Z)
Download STIX
Preview STIX
CVE-2023-22518 is a critical vulnerability that was discovered in all versions of Atlassian Confluence Data Center and Server products. Identified as an improper authorization flaw, it posed significant risks including potential data loss if exploited by an unauthenticated attacker. The vulnerability did not affect Atlassian Cloud sites accessed via atlassian.net. The issue was first reported on various security platforms including Wallarm and Help Net Security, urging immediate attention and action from enterprise administrators. Over a weekend, threat actors began exploiting this recently disclosed vulnerability. This led to heightened concerns given the widespread use of Atlassian's Confluence Data Center and Server solutions across many organizations. The exploitation of the vulnerability highlighted the urgency for users to address the issue promptly to prevent unauthorized access and potential data breaches. In response to the discovery and subsequent exploitation of the vulnerability, Atlassian took swift action to rectify the issue. The company released security updates to address CVE-2023-22518 and issued an urgent security advisory to its users. NSFOCUS CERT also confirmed that Atlassian officially fixed the improper authentication vulnerability in their Communication Data Center and Server. Atlassian strongly recommended that enterprise administrators update their on-premises Confluence Data Center and Server installations quickly to mitigate the risk associated with this vulnerability.
Description last updated: 2024-04-17T18:15:42.846Z
What's your take? (Question 1 of 5)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Vulnerability
Atlassian
Confluence
Ransomware
Exploit
Rapid7
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Associated Malware
To see the evidence that has resulted in these malware associations, create a free account
Alias DescriptionAssociation TypeVotes
The Cerber Malware is associated with CVE-2023-22518. Cerber is a type of malware, specifically a ransomware variant that targets systems to exploit and damage them. Ransomware is a form of malicious software designed to block access to a computer system until a sum of money is paid. Cerber infiltrates systems through suspicious downloads, emails, or wUnspecified
4
Source Document References
Information about the CVE-2023-22518 Vulnerability was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CISA
a month ago
Securityaffairs
4 months ago
Securityaffairs
5 months ago
Securityaffairs
a year ago
Securityaffairs
5 months ago
Securityaffairs
5 months ago
Securityaffairs
5 months ago
Securityaffairs
6 months ago
Securityaffairs
6 months ago
Securityaffairs
6 months ago
Securityaffairs
6 months ago
Securityaffairs
7 months ago
Securityaffairs
8 months ago
Securityaffairs
8 months ago
Securityaffairs
8 months ago
Securityaffairs
8 months ago
InfoSecurity-magazine
8 months ago
CERT-EU
a year ago
CERT-EU
a year ago
SANS ISC
a year ago