CVE-2017-18885
CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows attackers to gain privileges by accessing unintended API endpoints on a user's behalf.
Affected Platforms (CPE)
📦
Mattermost
Mattermost Server
< 4.1.2📦
Mattermost
Mattermost Server
>= 4.2.0 and < 4.2.1📦
Mattermost
Mattermost Server
= 4.3.0📦
Mattermost
Mattermost Server
= 4.3.0📦
Mattermost
Mattermost Server
= 4.3.0📦
Mattermost
