Description
Due to a broken access control vulnerability in Confluence, an unauthenticated attacker can create an administrator account and get full access to the system
Remediation
Upgrade to the latest version of Confluence
References
Related Vulnerabilities
Moodle Improper Input Validation Vulnerability (CVE-2011-4302)
WebLogic CVE-2018-2998 Vulnerability (CVE-2018-2998)
e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-11127)
Oracle HTTP Server NULL Pointer Dereference Vulnerability (CVE-2021-34798)
Ruby on Rails URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2021-44528)