CVE Database · CVE-2017-7415
CVSS v3.1
N/A
EPSS
4.35%
Published
Apr 27, 2017
Modified
May 12, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Atlassian Confluence 6.x before 6.0.7 allows remote attackers to bypass authentication and read any blog or page via the drafts diff REST resource.
Weaknesses (CWE)
Affected Products (7)
References (6)