Description
Affected versions of Confluence Server before 7.4.8, and versions from 7.5.0 before 7.11.0 allow attackers to identify internal hosts and ports via a blind server-side request forgery vulnerability in Team Calendars parameters.
Remediation
References
Related Vulnerabilities
PHP Other Vulnerability (CVE-2007-0909)
WordPress Plugin Code Insert Manager (Q2W3 Inc Manager) ZeroClipboard Cross-Site Scripting (2.3.1)
WordPress Plugin Events Manager Extended 'admin.php' SQL Injection (3.1.2)
Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22792)