CVE-2019-3396

CRITICAL KEV RANSOMWARE NUCLEI

Atlassian Confluence Widget Connector Macro Velocity Template Injection

Title source: metasploit

Description

The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from version 6.7.0 before 6.12.3 (the fixed version for 6.12.x), from version 6.13.0 before 6.13.3 (the fixed version for 6.13.x), and from version 6.14.0 before 6.14.2 (the fixed version for 6.14.x), allows remote attackers to achieve path traversal and remote code execution on a Confluence Server or Data Center instance via server-side template injection.

Exploits (27)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotemultiple
https://www.exploit-db.com/exploits/46731
exploitdb WORKING POC
by 46o60 · pythonwebappsmultiple
https://www.exploit-db.com/exploits/49465
nomisec WORKING POC 174 stars
by Yt1g3r · remote
https://github.com/Yt1g3r/CVE-2019-3396_EXP
nomisec WORKING POC 145 stars
by jas502n · remote
https://github.com/jas502n/CVE-2019-3396
nomisec NO CODE 39 stars
by pyn3rd · poc
https://github.com/pyn3rd/CVE-2019-3396
nomisec WORKING POC 22 stars
by x-f1v3 · remote
https://github.com/x-f1v3/CVE-2019-3396
nomisec WORKING POC 3 stars
by 0xNinjaCyclone · poc
https://github.com/0xNinjaCyclone/cve-2019-3396
nomisec WORKING POC 2 stars
by Avento · poc
https://github.com/Avento/CVE-2019-3396-Memshell-for-Behinder
nomisec WRITEUP 2 stars
by PetrusViet · remote
https://github.com/PetrusViet/cve-2019-3396
nomisec WRITEUP
by HK4zCzi · poc
https://github.com/HK4zCzi/CVE-2019-3396-Velocity-Server-Side-Template-Injection
nomisec STUB
by tno01 · poc
https://github.com/tno01/cve-2019-3396
nomisec WORKING POC
by kh4sh3i · remote
https://github.com/kh4sh3i/CVE-2019-3396
nomisec WORKING POC
by tranphuc2005 · remote
https://github.com/tranphuc2005/CVE-2019-3396
nomisec WORKING POC
by 46o60 · remote
https://github.com/46o60/CVE-2019-3396_Confluence
nomisec NO CODE
by yuehanked · poc
https://github.com/yuehanked/cve-2019-3396
nomisec STUB
by JonathanZhou348 · poc
https://github.com/JonathanZhou348/CVE-2019-3396TEST
nomisec NO CODE
by W2Ning · poc
https://github.com/W2Ning/CVE-2019-3396
nomisec WORKING POC
by am6539 · remote
https://github.com/am6539/CVE-2019-3396
nomisec STUB
by skommando · poc
https://github.com/skommando/CVE-2019-3396-confluence-poc
nomisec STUB
by tanw923 · poc
https://github.com/tanw923/test1
nomisec STUB
by s1xg0d · poc
https://github.com/s1xg0d/CVE-2019-3396
nomisec STUB
by vntest11 · poc
https://github.com/vntest11/confluence_CVE-2019-3396
nomisec NO CODE
by quanpt103 · poc
https://github.com/quanpt103/CVE-2019-3396
nomisec NO CODE
by xiaoshuier · poc
https://github.com/xiaoshuier/CVE-2019-3396
nomisec WRITEUP
by dothanthitiendiettiende · poc
https://github.com/dothanthitiendiettiende/CVE-2019-3396
metasploit WORKING POC EXCELLENT
by Daniil Dmitriev, Dmitry (rrock) Shchannikov · rubypocjava
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/confluence_widget_connector.rb

Nuclei Templates (1)

Atlassian Confluence Server - Path Traversal
CRITICALby harshbothra_
Shodan: http.component:"Atlassian Confluence" || cpe:"cpe:2.3:a:atlassian:confluence" || http.component:"atlassian confluence"

Scores

CVSS v3 9.8
EPSS 0.9447
EPSS Percentile 100.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2021-11-03
VulnCheck KEV 2019-04-23
InTheWild.io 2021-04-08
ENISA EUVD EUVD-2019-13035
Ransomware Use Confirmed
CWE
CWE-22
Status published
Products (1)
atlassian/confluence_server < 6.6.12
Published Mar 25, 2019
KEV Added Nov 03, 2021
Tracked Since Feb 18, 2026