CyberSec.Space Logo
CVEブラウザに戻る

CVE-2017-18885

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0190%
EPSS Percentile32.20th
Published2020年6月19日
Last Modified2024年11月21日

Vulnerability Description

An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows attackers to gain privileges by accessing unintended API endpoints on a user's behalf.

Affected Platforms (CPE)

📦
Mattermost

Mattermost Server

< 4.1.2
📦
Mattermost

Mattermost Server

>= 4.2.0 and < 4.2.1
📦
Mattermost

Mattermost Server

= 4.3.0
📦
Mattermost

Mattermost Server

= 4.3.0
📦
Mattermost

Mattermost Server

= 4.3.0
📦
Mattermost

Mattermost Server

= 4.3.0

References & Advisories

関連する脆弱性情報