ZeroHour

CVE-2017-18872

CVSS 3.1
4.3 medium
EPSS
<1%p45
Published
()
Modified
Description

An issue was discovered in Mattermost Server before 4.4.3 and 4.3.3. Attackers could reconfigure an OAuth app in some cases where Mattermost is an OAuth 2.0 service provider.

Vendors
mattermost
Products
mattermost server
Weakness
CWE-732
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.