Lucene search

K
atlassianSecurity-metrics-botATLASSIAN:CONFSERVER-54903
HistoryFeb 02, 2018 - 12:10 a.m.

XSS in the editinword resource through the contents of an uploaded file - CVE-2017-18083

2018-02-0200:10:33
security-metrics-bot
jira.atlassian.com
37

EPSS

0.001

Percentile

28.6%

The editinword resource in Atlassian Confluence Server before version 6.4.0 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the contents of an uploaded file.

EPSS

0.001

Percentile

28.6%

Related for ATLASSIAN:CONFSERVER-54903