Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rg67-9vmj-5rpg

Опубликовано: 17 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 2.7

Описание

Mattermost fails to properly show information in the UI, allowing a system admin to modify a board state allowing any user with a valid sharing link to join the board with editor access, without the UI showing the updated permissions.

Mattermost fails to properly show information in the UI, allowing a system admin to modify a board state allowing any user with a valid sharing link to join the board with editor access, without the UI showing the updated permissions.

EPSS

Процентиль: 19%
0.0006
Низкий

2.7 Low

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 2.7
nvd
больше 2 лет назад

Mattermost fails to properly show information in the UI, allowing a system admin to modify a board state allowing any user with a valid sharing link to join the board with editor access, without the UI showing the updated permissions.

CVSS3: 2.7
debian
больше 2 лет назад

Mattermost fails to properly show information in the UI, allowing a sy ...

EPSS

Процентиль: 19%
0.0006
Низкий

2.7 Low

CVSS3

Дефекты

CWE-862