9.8
CVSSv3

CVE-2018-21251

Published: 19/06/2020 Updated: 26/06/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in Mattermost Server prior to 5.2 and 5.1.1. Authorization could be bypassed if the channel name were not the same in the params and the body.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mattermost mattermost server

mattermost mattermost server 5.2.0