Back to search
CVE-2020-29445
Published: May 7, 2021
Modified: Feb 12, 2025
PUBLISHED
Description
Affected versions of Confluence Server before 7.4.8, and versions from 7.5.0 before 7.11.0 allow attackers to identify internal hosts and ports via a blind server-side request forgery vulnerability in Team Calendars parameters.
| Vendor | Product | Versions |
|---|---|---|
Atlassian | Confluence Server | affected unspecified - < 7.4.8affected 7.5.0 - < unspecifiedaffected unspecified - < 7.11.0 |
References
https://jira.atlassian.com/browse/CONFSERVER-61453
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now