CyberSec.Space Logo
Back to CVE Browser

CVE-2018-21251

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.2000%
EPSS Percentile27.40th
PublishedJun 19, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

An issue was discovered in Mattermost Server before 5.2 and 5.1.1. Authorization could be bypassed if the channel name were not the same in the params and the body.

Affected Platforms (CPE)

πŸ“¦
Mattermost

Mattermost Server

< 5.1.1
πŸ“¦
Mattermost

Mattermost Server

= 5.2.0
πŸ“¦
Mattermost

Mattermost Server

= 5.2.0
πŸ“¦
Mattermost

Mattermost Server

= 5.2.0
πŸ“¦
Mattermost

Mattermost Server

= 5.2.0
πŸ“¦
Mattermost

Mattermost Server

= 5.2.0
πŸ“¦
Mattermost

Mattermost Server

= 5.2.0

References & Advisories

Related Vulnerabilities