Atlassian¸ßΣ·ì϶Ԥ¾¯´«µÝ GA»Æ½ð¼×¼¯ÍÅÌṩ½â¾ö¹æ»®

°ä²¼¹¦·ò 2021-09-18

Atlassian¹Ù·½°ä²¼²¼¸æ£¬Åû¶һ¸öAtlassian Confluence Server ×¢Èë·ì϶£¨CVE-2021-26084£©£¬ÈëÇÖÕßÀûÓ÷ì϶¿ÉÆëÈ«½ÚÔì·þÎñÆ÷¡£Ä¿Ç°¸Ã·ì϶POC£¨¸ÅÏëÑéÖ¤´úÂ룩Òѹ«¿ª£¬ÇÒ´æÔÚ±»ÍøÂçºÚ²úÀûÓýøÐÐÍÚ¿óľÂíºÍ½©Ê¬ÍøÂçµÈ¹¥»÷ÐÐΪµÄ·çÏÕ¡£GA»Æ½ð¼×·ì϶ɨÃè²úÆ·ÍŶӵÚÒ»¹¦·ò¶Ô¸Ã·ì϶½øÐд¹Î£ÏìÓ¦¡£



Atlassian Confluence ServerÊǰĴóÀûÑÇAtlassian¹«Ë¾µÄÒ»Ì×ÓµÓÐÆóҵ֪ʶÖÎÀíÖ°ÄÜ£¬²¢Ö§³ÖÓÃÓÚ¹¹½¨ÆóÒµWiKiµÄЭͬÈí¼þµÄ·þÎñÆ÷°æ±¾¡£ConfluenceµÄʹÓÃÃæºÜ¹ã£¬ÔÚijЩÇé¿öÏ£¬Î´ÊÚȨµÄÈëÇÖÕßÄܹ»»ú¹ØÌØÊâµÄÒªÇó£¬Ôì³ÉÔ¶³Ì´úÂëÖ´ÐС£


¸Ã·ì϶µÄ×ÛºÏÆÀ¼¶Îª¡°¸ßΣ¡±¡£


·ì϶·çÏÕ


ÒÔϲúÆ·¼°°æ±¾Êܵ½Ó°Ï죺


Atlassian Confluence Server before 6.13.23, from 6.14.0 before 7.4.11, from 7.5.0 before 7.11.6, and from 7.12.0 before 7.12.5


·ì϶¼ì²â


GA»Æ½ð¼×¼¯ÍÅÌì¾µ´àÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0ÒÑÓÚ2021Äê9ÔÂ4ÈÕ´¹Î£°ä²¼Õë¶Ô¸Ã·ì϶µÄÉý¼¶°ü£¬Ö§³Ö¶Ô¸Ã·ì϶½øÐеÀÀíɨÃ裬Óû§Éý¼¶Ì쾵©ɨ²úÆ··ì϶¿âºó¼´¿É¶Ô¸Ã·ì϶½øÐÐɨÃ裺



6070°æ±¾Éý¼¶°üΪ607000377£¬Éý¼¶°üÏÂÔØµØÖ·£º


https://venustech.download.venuscloud.cn/


ÇëÌì¾µ´àÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬ÊµÊ±¶Ô¸Ã·ì϶½øÐмì²â£¬ÒԱ㾡¿ì²ÉÈ¡·À±¸´ëÊ©¡£


·ì϶½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬ÏêÇéÇë¹Ø×¢³§ÉÌÖ÷Ò³£º


https://www.atlassian.com/software/confluence/download-archives


ÈçÎÞ·¨µ±¼´Éý¼¶°æ±¾£¬½¨Òé²ÎÕÕ¹Ù·½°²È«¹«¸æ²ÉÈ¡»º½â´ëÊ©£º


https://confluence.atlassian.com/doc/confluence-security-advisory-2021-08-25-1077906215.html