CVE-2023-22515CISA KEV: Actively Exploited

Atlassian Confluence Data Center and Server Broken Access Control Vulnerability

Published Oct 5, 2023·Updated Oct 5, 2023

Description

Atlassian Confluence Data Center and Server contains a broken access control vulnerability that allows an attacker to create unauthorized Confluence administrator accounts and access Confluence.

Public Exploits & PoCs29 found

PoC: CVE-2023-22515

Confluence未授权添加管理员用户(CVE-2023-22515)漏洞利用工具

5

PoC: Confluence-EvilJar

配合 CVE-2023-22515 后台上传jar包实现RCE

2

PoC: CVE-2023-22515

CVE-2023-22515

1

PoC: CVE-2023-22515

CVE-2023-22515 (Confluence Broken Access Control Exploit)

1

PoC: CVE-2023-22515

Confluence未授权添加管理员用户漏洞利用脚本

1

PoC: CVE-2023-22515

CVE-2023-22515: Confluence Broken Access Control Exploit

1

PoC: CVE-2023-22515-Scan

Scanner for CVE-2023-22515 - Broken Access Control Vulnerability in Atlassian Confluence

1

PoC: CVE-2023-22515

Confluence CVE-2023-22515 - Create admin account

PoC: cve-2023-22515-lab

Hands-on security lab demonstrating CVE-2023-22515 — Atlassian Confluence Authentication Bypass using a simulated vulnerable environment.

PoC: LetsDefend-SOC235-Atlassian-Confluence-Broken-Access-Control-0-Day-CVE-2023-22515-EventID-197

I was presented with a high-severity alert indicating a potential exploit attempt of CVE-2023-22515, a zero-day vulnerability in Atlassian Confluence. The alert showed a suspicious GET request from an external IP targeting the Confluence server, suggesting an attempt to gain unauthorised admin access.

PoC: CVE-2023-22515-joaoviictorti

CVE-2023-22515 (Confluence Broken Access Control Exploit)

PoC: CVE-2023-22515

CVE 2023-22515

PoC: CVE-2023-22515-NSE

Vulnerability checking tool via Nmap Scripting Engine

PoC: cve-2023-22515

NSE script to check if app is vulnerable to cve-2023-22515

PoC: CVE-2023-22515-check

This script will inform the user if the Confluence instance is vulnerable, but it will not proceed with the exploitation steps.

PoC: NSE--CVE-2023-22515

NSE script for checking the presence of CVE-2023-22515

PoC: CVE-2023-22515

Passive version detection method for CVE-2023-22515 using Nuclei scanner

PoC: Exploit-CVE-2023-22515

A simple exploit for CVE-2023-22515

PoC: cve-2023-22515

Confluence broken access control to code execution

PoC: CVE-2023-22515

Server Broken Access Control in Confluence - CVE-2023-22515

PoC: confluence-hack

CVE-2023-22515

PoC: cve-2023-22515-exp

cve-2023-22515的python利用脚本

PoC: CVE-2023-22515_RCE

Confluence后台rce

PoC: CVE-2023-22515

iveresk-CVE-2023-22515

PoC: confluence-cve-2023-22515

Confluence Broken Access Control

PoC: CVE-2023-22515

Confluence Data Center & Server 权限提升漏洞 Exploit

PoC: CVE-2023-22515

CVE-2023-22515 - Broken Access Control Vulnerability in Confluence Data Center and Server

PoC: CVE-2023-22515-POC

Poc for CVE-2023-22515

PoC: CVE-2023-22515-PoC

metasploit module for CVE-2023-22515

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free