Oct. 11, 2023, 11:10 a.m. | Helga Labus

Help Net Security www.helpnetsecurity.com

A critical flaw in Atlassian Confluence Data Center and Server (CVE-2023-22515) has been exploited by a state-backed threat actor, Microsoft’s threat analysts have pinpointed. About the vulnerability CVE-2023-22515 was initially classified as a critical privilege escalation vulnerability affecting Confluence Data Center and Server versions 8.0.0 and later, but then re-classified as an issue stemming from broken access control. Atlassian said on October 5 that multiple customers have reported attacks in which external attackers have used … More


The post …

actor analysts atlassian atlassian confluence center classified confluence confluence data center confluence vulnerability critical critical flaw cve cve-2023-22515 data data center don't miss escalation exploit exploited flaw greynoise hot stuff microsoft privilege privilege escalation rapid7 server state threat threat actor vulnerability vulnerability exploited

More from www.helpnetsecurity.com / Help Net Security

DevSecOps Engineer

@ Material Bank | Remote

Instrumentation & Control Engineer - Cyber Security

@ ASSYSTEM | Bridgwater, United Kingdom

Security Consultant

@ Tenable | MD - Columbia - Headquarters

Management Consultant - Cybersecurity - Internship

@ Wavestone | Hong Kong, Hong Kong

TRANSCOM IGC - Cybersecurity Engineer

@ IT Partners, Inc | St. Louis, Missouri, United States

Manager, Security Operations Engineering (EMEA)

@ GitLab | Remote, EMEA