Логотип exploitDog
bind:CVE-2022-2406
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-2406

Количество 3

Количество 3

nvd логотип

CVE-2022-2406

почти 3 года назад

The legacy Slack import feature in Mattermost version 6.7.0 and earlier fails to properly limit the sizes of imported files, which allows an authenticated attacker to crash the server by importing large files via the Slack import REST API.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2022-2406

почти 3 года назад

The legacy Slack import feature in Mattermost version 6.7.0 and earlie ...

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-fv5r-cw7f-79jm

почти 3 года назад

The legacy Slack import feature in Mattermost version 6.7.0 and earlier fails to properly limit the sizes of imported files, which allows an authenticated attacker to crash the server by importing large files via the Slack import REST API.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-2406

The legacy Slack import feature in Mattermost version 6.7.0 and earlier fails to properly limit the sizes of imported files, which allows an authenticated attacker to crash the server by importing large files via the Slack import REST API.

CVSS3: 4.3
0%
Низкий
почти 3 года назад
debian логотип
CVE-2022-2406

The legacy Slack import feature in Mattermost version 6.7.0 and earlie ...

CVSS3: 4.3
0%
Низкий
почти 3 года назад
github логотип
GHSA-fv5r-cw7f-79jm

The legacy Slack import feature in Mattermost version 6.7.0 and earlier fails to properly limit the sizes of imported files, which allows an authenticated attacker to crash the server by importing large files via the Slack import REST API.

CVSS3: 6.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу