Логотип exploitDog
bind:CVE-2024-39767
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-39767

Количество 2

Количество 2

nvd логотип

CVE-2024-39767

больше 1 года назад

Mattermost Mobile Apps versions <=2.16.0 fail to validate that the push notifications received for a server actually came from this serve that which allows a malicious server to send push notifications with another server’s diagnostic ID or server URL and have them show up in mobile apps as that server’s push notifications.

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-x5q7-p9g5-58x7

больше 1 года назад

Mattermost Mobile Apps versions <=2.16.0 fail to validate that the push notifications received for a server actually came from this serve that which allows a malicious server to send push notifications with another server’s diagnostic ID or server URL and have them show up in mobile apps as that server’s push notifications.

CVSS3: 4.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-39767

Mattermost Mobile Apps versions <=2.16.0 fail to validate that the push notifications received for a server actually came from this serve that which allows a malicious server to send push notifications with another server’s diagnostic ID or server URL and have them show up in mobile apps as that server’s push notifications.

CVSS3: 4.2
0%
Низкий
больше 1 года назад
github логотип
GHSA-x5q7-p9g5-58x7

Mattermost Mobile Apps versions <=2.16.0 fail to validate that the push notifications received for a server actually came from this serve that which allows a malicious server to send push notifications with another server’s diagnostic ID or server URL and have them show up in mobile apps as that server’s push notifications.

CVSS3: 4.2
0%
Низкий
больше 1 года назад

Уязвимостей на страницу