Navigation Menu

Skip to content

dorkerdevil/CVE-2021-26084

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

13 Commits
 
 
 
 

Repository files navigation

CVE-2021-26084

Confluence OGNL injection

CVE-2021-26084 is an Object-Graph Navigation Language (OGNL) injection vulnerability in the Atlassian Confluence Webwork implementation. An unauthenticated, remote attacker could exploit this flaw by sending a specially crafted request to vulnerable endpoints on the Confluence Server or Data Center instance. Successful exploitation would allow an attacker to execute arbitrary code.

Note - make sure to change the collaborator id.

Usage

python3 CVE-2021-26084.py collabid http(s)://target

Authors

D0rkerDevil

This is for educational purposes, Authors are not responsible for any damages.

About

Confluence OGNL injection

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages