Showing 1 vulnerability on this page for mattermost

Signals CISA KEV Ransomware Nuclei
jenkins vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Mattermost allows team admins to promote guests to team admins

Mattermost versions 9.6.0, 9.5.x before 9.5.3, and 8.1.x before 8.1.12 fail to fully validate role changes, which allows an attacker authenticated as a team admin to promote guests to team admins via crafted HTTP requests.

CWE-284Apr 26, 2024
CVSS2.7v3.1EPSS0.502%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX