I searched the knowledge base and really couldn't find anything helpful. I am newly administrating our confluence instance and got a message from security that there was a vulnerability in one of our files:
data4744185932497248027.tmp
and the path to the suspicious file is:
root@XXX:/var/atlassian/application-data/confluence/attachments/ver003/5/181/140181505/218/202# ls -l
total 4
drwx------ 37 confluence confluence 4096 Sep 2 2021 139952218
this file has been here for 2 years and hasn't flagged since. Is there a easy way to find out which page/space this is located in to make sure it is legit?
Thanks,
Dave V