Mateusz Mandera
8 exploits
Active since Nov 2019
Zulip: Path Traversal in Import
CVSS 6.1
Zulip Server <2.0.7 - Privilege Escalation
CVSS 9.8
zulip < 4.10 - Improper Access Control
CVSS 8.8
Zulip < 4.8 - Insufficient Session Expiration in Account Registration Flow
CVSS 6.5
Zulip Server 2.0.0-4.10.0 - Insufficient Access Control via Multi-Use Invitations
CVSS 7.2
Zulip < 6.2 - Unauthenticated Account Creation via LDAP Authentication Bypass
CVSS 6.5
Zulip Server 7.0-9.4 - Unauthenticated Email Address Enumeration
CVSS 5.3
Zulip Server < 10.2 - Unauthenticated Account Creation via SSO Bypass
CVSS 8.2