-
Type:
Bug
-
Resolution: Fixed
-
Priority:
Medium
-
Affects Version/s: 6.4.3
-
Component/s: Content - Attachments
-
Severity 2 - Major
The attachment resource in Atlassian Confluence before version 6.6.1 allows remote attackers to spoof web content in the Mozilla Firefox Browser through attachments that have a content-type of application/rdf+xml.
- relates to
-
HTTP-3 Content spoofing through the application/mathml+xml content-type in the Mozilla Firefox Browser - CVE-2017-18103
-
- Closed
-