Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
confluence-hack — CVE-2023-22515 | Kitploit
Tools/GitHubGitHub/aiex-3/confluence-hack
Privilege EscalationVulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingLearning & Education
GitHubaiex-3/confluence-hack

confluence-hack

CVE-2023-22515

View Repository
5272 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Confluence Hack

CVE-2023-22515

exploit.py

Exploit to create a new admin user
Compromised audit log:

As a reverence served: https://packetstormsecurity.com/files/175225/Atlassian-Confluence-Unauthenticated-Remote-Code-Execution.html and https://github.com/Chocapikk/CVE-2023-22515

plugin_shellplug.jar

This plugin provides a web-based shell interface for executing command-line commands on a server
You can install it from the Confluence web admin GUI
Was found on a server that was live in production

ShellServlet.java

Is the decompiled file of plugin_shellplug.jar

Tested on

  • Confluence Server 8.5.1

Disclaimer

This repository is provided for educational and informational purposes only. Use it responsibly and only on systems that you have permission to test. Unauthorized access to computer systems is illegal and unethical.

Download Tool