Description
Cross-site scripting (XSS) vulnerability in Atlassian Confluence before 5.10.6 allows remote attackers to inject arbitrary web script or HTML via the newFileName parameter to pages/doeditattachment.action.
Remediation
References
Related Vulnerabilities
Joomla Permissions, Privileges, and Access Controls Vulnerability (CVE-2006-4476)
WordPress Plugin WP-Testimonials SQL Injection (3.4.1)
Liferay Portal CVE-2022-45320 Vulnerability (CVE-2022-45320)
Internet Information Services Other Vulnerability (CVE-2006-6579)
Squid Uncontrolled Resource Consumption Vulnerability (CVE-2021-46784)