ZeroHour

CVE-2024-21848

CVSS 3.1
3.1 low
EPSS
<1%p24
Published
()
Modified
Description

Improper Access Control in Mattermost Server versions 8.1.x before 8.1.11 allows an attacker that is in a channel with an active call to keep participating in the call even if they are removed from the channel

Vendors
mattermost
Products
mattermost server
Weakness
CWE-284, CWE-273
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.