CVE-2019-3398 | Atlassian Confluence Server/Data Center up to 6.6.12/6.12.3/6.13.3/6.14.2/6.15.1 downloadallattachments path traversal (Bug 152616 / EDB-47635)
A vulnerability was found in Atlassian Confluence Server and Data Center up to 6.6.12/6.12.3/6.13.3/6.14.2/6.15.1. It has been classified as critical. This affects an unknown part of the file downloadallattachments. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2019-3398. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.