Security Advisory

CVE-2015-8398

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-04-11 21:00:00
Last updated 2024-08-06 08:13:32
Assigner mitre
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Atlassian Confluence before 5.8.17 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to rest/prototype/1/session/check.