漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
Several rest inline action resources of Atlassian Activity Streams before version 6.3.0 allows remote authenticated attackers to watch any Confluence page & receive notifications when comments are added to the watched page, and vote & watch JIRA issues that they do not have access to, although they will not receive notifications for the issue, via missing permission checks.
漏洞信息
N/A
漏洞
访问控制不恰当
漏洞
Atlassian Activity Streams 访问控制错误漏洞
漏洞信息
Atlassian Activity Streams是澳大利亚Atlassian公司的一套网页栏目快速添加工具。 Atlassian Activity Streams 6.3.0之前版本中的rest inline action resources存在访问控制错误漏洞。远程攻击者可利用该漏洞查看任意的Confluence页面和接收的通知。
漏洞信息
N/A
漏洞
N/A