Atlassian Confluence Improper Input Validation Vulnerability - CVE-2018-13389 - Vulnerability Database

Atlassian Confluence Improper Input Validation Vulnerability - CVE-2018-13389

Medium
Reference: CVE-2018-13389
Title: Atlassian Confluence Improper Input Validation Vulnerability
Overview:

The attachment resource in Atlassian Confluence before version 6.6.1 allows remote attackers to spoof web content in the Mozilla Firefox Browser through attachments that have a content-type of application/rdfxml.