Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-26086 PoC — Atlassian Jira 路径遍历漏洞

Source
Associated Vulnerability
Title:Atlassian Jira 路径遍历漏洞 (CVE-2021-26086)
Description:Affected versions of Atlassian Jira Server and Data Center allow remote attackers to read particular files via a path traversal vulnerability in the /WEB-INF/web.xml endpoint. The affected versions are before version 8.5.14, from version 8.6.0 before 8.13.6, and from version 8.14.0 before 8.16.1.
Description
Confluence OGNL Injection [CVE-2021-26084].
Readme
# CVE-2021-26084
<p align="center">
  <img src="https://user-images.githubusercontent.com/44043159/132096348-db727da8-bf00-457a-a09d-26599743b145.jpg" width="200" height="200">
</p>


    this is a script written in golang to exploit Confluence OGNL Injection [CVE-2021-26084].
    
---
<p align="center">
  <img src="https://user-images.githubusercontent.com/44043159/132096440-0d279032-103d-4ad2-b9f3-7e55689826f9.png">
  <img src="https://user-images.githubusercontent.com/44043159/132096569-ed253575-5358-4c04-a20d-60c0e7496e1a.png">
</p>

---

```bash
git clone https://github.com/march0s1as/CVE-2021-26084/
cd CVE-2021-26084
go get -v github.com/fatih/color
go build post.go
./post.go -h
```


File Snapshot

[4.0K] /data/pocs/c0341d34fcc1d40e8a6b81b83ff4673aa1cbf392 ├── [ 240] go.mod ├── [ 829] go.sum ├── [3.8K] post.go └── [ 700] README.md 0 directories, 4 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →