S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2021-26085 Scanner

CVE-2021-26085 scanner - Pre-Authorization Arbitrary File Read vulnerability in Atlassian Confluence Server

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
3k
Times Used
continuous scan runs
4.8k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2021-26085
5.3
CVSSmedium
Exploitable remotely over the internet · no authentication required.

Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a Pre-Authorization Arbitrary File Read vulnerability in the /s/ endpoint. The affected versions are before version 7.4.10, and from version 7.5.0 before 7.12.3.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
Confluence Serverby Atlassian
AFFECTED< 7.4.10SAFE ✓≥ 7.4.10
Confluence Data Centerby Atlassian
AFFECTED< 7.4.10SAFE ✓≥ 7.4.10
Updated Aug 19, 2026View on NVD →
Detail

Atlassian Confluence Server is a popular team collaboration software that facilitates the creation, sharing, and management of content such as documents, ideas, and knowledge among members of a team or organization. The platform brings together different features, including document editing, project management, and social networking capabilities, making it a versatile tool for both small and large businesses. Atlassian Confluence Server is widely used by businesses to streamline their workflows, centralize information, and boost productivity.

However, the platform has been found to have a serious vulnerability that could lead to unauthorized access to restricted resources. The vulnerability, identified as CVE-2021-26085, was discovered in versions of Atlassian Confluence Server prior to version 7.4.10 and from version 7.5.0 to version 7.12.3. The weakness is essentially a pre-authorization arbitrary file read defect that could allow remote attackers to gain access to sensitive files without proper authentication.

This vulnerability poses a significant risk to businesses that use Atlassian Confluence Server because attackers can potentially access confidential information stored on the platform. Hackers can leverage this vulnerability to tap into critical company data, including confidential documents, login credentials, and financial information. The attack could ultimately lead to data breaches, financial loss, and reputational damage.

Thankfully, dealing with vulnerabilities in digital assets is much easier with advanced threat intelligence platforms such as s4e.io. It provides comprehensive security intelligence resources to help businesses understand, identify and tackle potential security threats as they emerge, keeping them ahead of the curve in the fight against cybercrime.

 

REFERENCES

Solution Advice

To mitigate against the risks associated with CVE-2021-26085, businesses can take the following precautions:

  • Upgrade to the latest version of Atlassian Confluence Server, which contains a patch for the vulnerability.
  • Consider installing proper security policies and procedures for user access controls and permissions management.
  • Run regular security assessments to identify and address potential vulnerabilities within digital assets.
  • Avoid exposing critical data through the web by limiting access to authorized personnel only.
  • Implement two-factor authentication and other mitigations to reduce the risk of unauthorized access to data on the platform.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.