CVE-2018-18289: Infoleak
Published Oct 14, 2018
·Updated
The MESILAT Zabbix plugin before 1.1.15 for Atlassian Confluence allows attackers to read arbitrary files.
Affected Software
1 affected component
MESILAT Zabbix Confluence<1.1.15
Event History
Oct 14, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-18289?
CVE-2018-18289 is considered a high severity vulnerability due to its potential to allow attackers to read arbitrary files.
2
How do I fix CVE-2018-18289?
To fix CVE-2018-18289, upgrade to the latest version of the MESILAT Zabbix plugin, version 1.1.15 or newer.
3
What are the potential impacts of CVE-2018-18289?
The potential impacts of CVE-2018-18289 include unauthorized access to sensitive information stored in files on the server.
4
Who is affected by CVE-2018-18289?
CVE-2018-18289 affects users of the MESILAT Zabbix plugin for Atlassian Confluence versions prior to 1.1.15.
5
Is CVE-2018-18289 being actively exploited?
At this time, there are no confirmed reports of active exploitation of CVE-2018-18289, but it remains a serious risk.