Hey all,
I have a question relating to the side-effects of the mitigation of this Confluence CVE. Specifically, the inability to see thumbnails of attached files after disabling the 'webDAV' plugin. This occurs when disabling webDAV also disables the 'Office Connector' plugin as a result. Office connector contains the modules which allow Confluence to display thumbnails on pages.
Which modules of office connector interact with the webDAV plugin?
If I were to enable the 'viewdoc', 'viewxls', 'viewppt', and 'viewpdf' modules and have the rest of the office connector modules disabled would this stop the vulnerability from affecting the Confluence instance while still allowing for thumbnails to be present?