We have a public-facing support site running confluence:
https://support.member.buzz
We recently received an anonymous email that contained otherwise internal information about our server:
While none of this information is particularly sensitive, how on earth would they be able to get it? Are they really able to execute any script on the server or is this somehow fake?