CVE-2020-14215
21.08.2020, 05:15
Zulip Server before 2.1.5 has Incorrect Access Control because 0198_preregistrationuser_invited_as adds the administrator role to invitations.Enginsight
Vendor | Product | Version |
---|---|---|
zulip | zulip_server | 𝑥 < 2.1.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration