> For the complete documentation index, see [llms.txt](https://heapbytes.gitbook.io/notes/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://heapbytes.gitbook.io/notes/ctf-writeups/2023-ctfs/yctf-week-2-9-dec-23/web-security/confluence.md).

# Confluence

http\://139.59.45.27:8090/admin/flag.tar.gz

<figure><img src="https://2093681522-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F8U5ZBZXak4T44Qt4GjMG%2Fuploads%2F7Mxc6o0kCo7tnZoWjpOa%2Fimage.png?alt=media&amp;token=4c219024-5624-4df2-9a8a-dc850daa5aee" alt=""><figcaption><p>Chall des &#x26; points</p></figcaption></figure>

* confluence soln was very simple, it was a public CVE

## link for exploit : [https://github.com/kh4sh3i/CVE-2023-22515](<https://github.com/kh4sh3i/CVE-2023-22515&#xA;>)

## detailed&#x20;

* if u wanna try yourself :&#x20;

{% embed url="<https://blog.qualys.com/vulnerabilities-threat-research/2023/11/15/atlassian-confluence-broken-access-control-vulnerability-cve-2023-22515>" %}

## Flag : YCTF{C0nf1u3nc3\_x\_YCF}
