CVE-2023-2784
16.06.2023, 09:15
Mattermost fails to verify if the requestor is a sysadmin or not, before allowing `install` requests to the Apps allowing a regular user send install requests to the Apps.Enginsight
Vendor | Product | Version |
---|---|---|
mattermost | mattermost | 7.8.0 ≤ 𝑥 ≤ 7.8.4 |
mattermost | mattermost | 7.9.0 ≤ 𝑥 ≤ 7.9.3 |
mattermost | mattermost | 7.10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration