ZeroHour

CVE-2018-16515

CVSS 3.0
8.8 high
EPSS
2%p73
Published
()
Modified
Description

Matrix Synapse before 0.33.3.1 allows remote attackers to spoof events and possibly have unspecified other impacts by leveraging improper transaction and event signature validation.

Vendors
matrixdebian
Products
synapse, debian linux
Weakness
CWE-347
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.