CVE-2019-3396
CRITICAL KEV RANSOMWARE NUCLEIAtlassian Confluence Widget Connector Macro Velocity Template Injection
Title source: metasploitDescription
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from version 6.7.0 before 6.12.3 (the fixed version for 6.12.x), from version 6.13.0 before 6.13.3 (the fixed version for 6.13.x), and from version 6.14.0 before 6.14.2 (the fixed version for 6.14.x), allows remote attackers to achieve path traversal and remote code execution on a Confluence Server or Data Center instance via server-side template injection.
Exploits (27)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotemultiple
https://www.exploit-db.com/exploits/46731
github
175 stars
by wjl110 · javascriptpoc
https://github.com/wjl110/CVE-Master/tree/main/CVE-2019-3396_EXP-master
nomisec
WORKING POC
2 stars
by Avento · poc
https://github.com/Avento/CVE-2019-3396-Memshell-for-Behinder
nomisec
WRITEUP
by HK4zCzi · poc
https://github.com/HK4zCzi/CVE-2019-3396-Velocity-Server-Side-Template-Injection
nomisec
WRITEUP
by dothanthitiendiettiende · poc
https://github.com/dothanthitiendiettiende/CVE-2019-3396
metasploit
WORKING POC
EXCELLENT
by Daniil Dmitriev, Dmitry (rrock) Shchannikov · rubypocjava
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/confluence_widget_connector.rb
Nuclei Templates (1)
Atlassian Confluence Server - Path Traversal
CRITICALby harshbothra_
Shodan:
http.component:"Atlassian Confluence" || cpe:"cpe:2.3:a:atlassian:confluence" || http.component:"atlassian confluence"
References (6)
Scores
CVSS v3
9.8
EPSS
0.9447
EPSS Percentile
100.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CISA KEV
2021-11-03
VulnCheck KEV
2019-04-23
InTheWild.io
2021-04-08
ENISA EUVD
EUVD-2019-13035
Ransomware Use
Confirmed
CWE
CWE-22
Status
published
Products (1)
atlassian/confluence_server
< 6.6.12
Published
Mar 25, 2019
KEV Added
Nov 03, 2021
Tracked Since
Feb 18, 2026