CVE-2020-14460
19.06.2020, 14:15
An issue was discovered in Mattermost Server before 5.19.0, 5.18.1, 5.17.3, 5.16.5, and 5.9.8. Creation of a trusted OAuth application does not always require admin privileges, aka MMSA-2020-0001.Enginsight
Vendor | Product | Version |
---|---|---|
mattermost | mattermost_server | 𝑥 < 5.9.8 |
mattermost | mattermost_server | 5.16.0 ≤ 𝑥 < 5.16.5 |
mattermost | mattermost_server | 5.17.0 ≤ 𝑥 < 5.17.3 |
mattermost | mattermost_server | 5.18.0 ≤ 𝑥 < 5.18.1 |
mattermost | mattermost_server | 5.19.0:rc1 |
mattermost | mattermost_server | 5.19.0:rc2 |
mattermost | mattermost_server | 5.19.0:rc3 |
𝑥
= Vulnerable software versions