CVE-2023-2792
16.06.2023, 10:15
Mattermost fails to sanitize ephemeral error messages, allowing an attacker to obtain arbitrary message contents by a specially crafted /groupmsg command.Enginsight
Vendor | Product | Version |
---|---|---|
mattermost | mattermost | 7.1.0 ≤ 𝑥 ≤ 7.1.9 |
mattermost | mattermost | 7.8.0 ≤ 𝑥 ≤ 7.8.4 |
mattermost | mattermost | 7.9.0 ≤ 𝑥 ≤ 7.9.3 |
mattermost | mattermost | 7.10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration