Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hrr7-x743-5wr4

Опубликовано: 16 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Mattermost fails to properly check the permissions when executing commands allowing a member with no permissions to post a message in a channel to actually post it by executing channel commands.

Mattermost fails to properly check the permissions when executing commands allowing a member with no permissions to post a message in a channel to actually post it by executing channel commands.

EPSS

Процентиль: 24%
0.00077
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 4.3
nvd
около 2 лет назад

Mattermost fails to properly check the permissions when executing commands allowing a member with no permissions to post a message in a channel to actually post it by executing channel commands.

CVSS3: 4.3
debian
около 2 лет назад

Mattermost fails to properly check thepermissions when executing comma ...

EPSS

Процентиль: 24%
0.00077
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862