cbcvebase.
CVE-2017-7415
published 2017-04-27

CVE-2017-7415: Atlassian Confluence 6.x before 6.0.7 allows remote attackers to bypass authentication and read any blog or page via the drafts diff REST resource.

high7.5CVSS 3.0
AVNACLPRNUINSUCHINAN
Atlassian Confluence 6.x before 6.0.7 allows remote attackers to bypass authentication and read any blog or page via the drafts diff REST resource.

Affected

7 ranges
VendorProductVersion rangeFixed in
atlassianconfluence_server
atlassianconfluence_server
atlassianconfluence_server
atlassianconfluence_server
atlassianconfluence_server
atlassianconfluence_server
atlassianconfluence_server