Skip to content
COOEY

EXPOSURES › CVE-2023-22518

CVE-2023-22518

CRITICAL ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2023-11-07 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-22518 ↗
⌖ EXPLOITED IN THE WILD SHAME 85/100 ransomwareexploited-in-wildunpatched

An unauthenticated attacker could exploit an improper authorization flaw in Atlassian Confluence Data Center and Server to cause significant data loss.

This vulnerability allows an unauthenticated attacker to bypass authorization controls, leading to significant data loss without compromising confidentiality. DIB organizations must ensure Confluence is patched immediately, as this flaw is actively exploited in the wild and linked to ransomware campaigns. Failure to patch exposes sensitive data to destruction or alteration, violating CMMC/NIST 800-171 requirements for patch management and data integrity.

Shame score — The flaw is actively exploited in the wild, linked to ransomware, and causes significant data loss despite being an authorization issue rather than a data exfiltration vector.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Atlassian Confluence Data Center and Server contain an improper authorization vulnerability that can result in significant data loss when exploited by an unauthenticated attacker. There is no impact on confidentiality since the attacker cannot exfiltrate any data.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.