Логотип exploitDog
bind:CVE-2024-45843
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-45843

Количество 3

Количество 3

nvd логотип

CVE-2024-45843

больше 1 года назад

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

CVSS3: 3.1
EPSS: Низкий
debian логотип

CVE-2024-45843

больше 1 года назад

Mattermost versions 9.5.x <= 9.5.8 fail to include themetadata endpoin ...

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-w37h-c34c-gwjm

больше 1 года назад

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

CVSS3: 3.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-45843

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

CVSS3: 3.1
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-45843

Mattermost versions 9.5.x <= 9.5.8 fail to include themetadata endpoin ...

CVSS3: 3.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-w37h-c34c-gwjm

Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.

CVSS3: 3.1
0%
Низкий
больше 1 года назад

Уязвимостей на страницу