mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-07 03:02:30 +00:00
25 lines
973 B
Markdown
25 lines
973 B
Markdown
![]() |
### [CVE-2015-8399](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8399)
|
||
|

|
||
|

|
||
|

|
||
|
|
||
|
### Description
|
||
|
|
||
|
Atlassian Confluence before 5.8.17 allows remote authenticated users to read configuration files via the decoratorName parameter to (1) spaces/viewdefaultdecorator.action or (2) admin/viewdefaultdecorator.action.
|
||
|
|
||
|
### POC
|
||
|
|
||
|
#### Reference
|
||
|
- https://www.exploit-db.com/exploits/39170/
|
||
|
|
||
|
#### Github
|
||
|
- https://github.com/0ps/pocassistdb
|
||
|
- https://github.com/ARPSyndicate/cvemon
|
||
|
- https://github.com/ARPSyndicate/kenzer-templates
|
||
|
- https://github.com/CLincat/vulcat
|
||
|
- https://github.com/Elsfa7-110/kenzer-templates
|
||
|
- https://github.com/HimmelAward/Goby_POC
|
||
|
- https://github.com/Z0fhack/Goby_POC
|
||
|
- https://github.com/jweny/pocassistdb
|
||
|
|