ZeroHour

CVE-2017-18903

CVSS 3.1
8.8 high
EPSS
<1%p36
Published
()
Modified
Description

An issue was discovered in Mattermost Server before 4.0.0, 3.10.2, and 3.9.2. CSRF can occur if CORS is enabled.

Vendors
mattermost
Products
mattermost server
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.