Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-42978


In the Netic User Export add-on before 1.3.5 for Atlassian Confluence, authorization is mishandled. An unauthenticated attacker could access files on the remote system.


Published

2022-11-15T01:15:13.693

Last Modified

2025-04-30T18:15:35.040

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-863
  • Type: Secondary
    CWE-863

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application atlassian confluence_data_center < 1.3.5 Yes

References