Lucene search

K
atlassianSecurity-metrics-botATLASSIAN:CONFSERVER-54905
HistoryFeb 02, 2018 - 12:11 a.m.

XSS in the viewdefaultdecorator resource through the key parameter - CVE-2017-18085

2018-02-0200:11:46
security-metrics-bot
jira.atlassian.com
42

EPSS

0.001

Percentile

40.6%

The viewdefaultdecorator resource in Atlassian Confluence Server before version 6.6.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the key parameter.

EPSS

0.001

Percentile

40.6%

Related for ATLASSIAN:CONFSERVER-54905