CVE-2024-47145
EUVD-2024-4228926.09.2024, 08:15
Mattermost versions 9.5.x <= 9.5.8 fail to properly authorize access to archived channels when viewing archived channels is disabled, which allows an attacker to view posts and files of archived channels via file links.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mattermost | mattermost_server | 9.5.0 ≤ 𝑥 < 9.5.9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References