CVE-2016-4317

Severity
5.4MEDIUM
EPSS
0.2%
top 59.27%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 10
Latest updateMay 14

Description

Atlassian Confluence Server before 5.9.11 has XSS on the viewmyprofile.action page.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:NExploitability: 2.3 | Impact: 2.7

Affected Packages2 packages

CVEListV5atlassian_confluence_server_before_5.9.11Atlassian Confluence Server before 5.9.11

🔴Vulnerability Details

2
GHSA
GHSA-7ghq-p5xw-vc62: Atlassian Confluence Server before 52022-05-14
CVEList
CVE-2016-4317: Atlassian Confluence Server before 52017-04-10
CVE-2016-4317 (MEDIUM CVSS 5.4) | Atlassian Confluence Server before | cvebase.io