Atlassian¸ßΣÎó²îÔ¤¾¯×ª´ï ×ðÁú¿­¹ÙÍøÈë¿Ú¼¯ÍÅÌṩ½â¾ö¼Æ»®

Ðû²¼Ê±¼ä 2021-09-18

Atlassian¹Ù·½Ðû²¼Í¨¸æ £¬Åû¶һ¸öAtlassian Confluence Server ×¢ÈëÎó²î£¨CVE-2021-26084£© £¬ÈëÇÖÕßʹÓÃÎó²î¿ÉÍêÈ«¿ØÖÆ·þÎñÆ÷¡£ÏÖÔÚ¸ÃÎó²îPOC£¨¿´·¨ÑéÖ¤´úÂ룩ÒѹûÕæ £¬ÇÒ±£´æ±»ÍøÂçºÚ²úʹÓþÙÐÐÍÚ¿óľÂíºÍ½©Ê¬ÍøÂçµÈ¹¥»÷ÐÐΪµÄΣº¦¡£×ðÁú¿­¹ÙÍøÈë¿ÚÎó²îɨÃè²úÆ·ÍŶӵÚһʱ¼ä¶Ô¸ÃÎó²î¾ÙÐнôÆÈÏìÓ¦¡£



Atlassian Confluence ServerÊǰĴóÀûÑÇAtlassian¹«Ë¾µÄÒ»Ì×¾ßÓÐÆóҵ֪ʶ¹ÜÀí¹¦Ð§ £¬²¢Ö§³ÖÓÃÓÚ¹¹½¨ÆóÒµWiKiµÄЭͬÈí¼þµÄ·þÎñÆ÷°æ±¾¡£ConfluenceµÄʹÓÃÃæºÜ¹ã £¬ÔÚijЩÇéÐÎÏ £¬Î´ÊÚȨµÄÈëÇÖÕß¿ÉÒÔ½á¹¹ÌØÊâµÄÇëÇó £¬Ôì³ÉÔ¶³Ì´úÂëÖ´ÐС£


¸ÃÎó²îµÄ×ÛºÏÆÀ¼¶Îª¡°¸ßΣ¡±¡£


Îó²îΣº¦


ÒÔϲúÆ·¼°°æ±¾Êܵ½Ó°Ï죺


Atlassian Confluence Server before 6.13.23, from 6.14.0 before 7.4.11, from 7.5.0 before 7.11.6, and from 7.12.0 before 7.12.5


Îó²î¼ì²â


×ðÁú¿­¹ÙÍøÈë¿Ú¼¯ÍÅÌ쾵ųÈõÐÔɨÃèÓë¹ÜÀíϵͳV6.0ÒÑÓÚ2021Äê9ÔÂ4ÈÕ½ôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄÉý¼¶°ü £¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐÐÔ­ÀíɨÃè £¬Óû§Éý¼¶Ì쾵©ɨ²úÆ·Îó²î¿âºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐÐɨÃ裺



6070°æ±¾Éý¼¶°üΪ607000377 £¬Éý¼¶°üÏÂÔØµØÖ·£º


https://venustech.download.venuscloud.cn/


ÇëÌ쾵ųÈõÐÔɨÃèÓë¹ÜÀíϵͳV6.0²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾 £¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐмì²â £¬ÒԱ㾡¿ì½ÓÄÉÌá·À²½·¥¡£


Îó²îÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î £¬ÏêÇéÇë¹Ø×¢³§ÉÌÖ÷Ò³£º


https://www.atlassian.com/software/confluence/download-archives


ÈçÎÞ·¨Á¬Ã¦Éý¼¶°æ±¾ £¬½¨Òé²ÎÕÕ¹Ù·½Ç徲ͨ¸æ½ÓÄÉ»º½â²½·¥£º


https://confluence.atlassian.com/doc/confluence-security-advisory-2021-08-25-1077906215.html