Miggo Logo

CVE-2023-45223: Mattermost Exposure of Sensitive Information to an Unauthorized Actor vulnerability

4.3

CVSS Score
3.1

Basic Information

EPSS Score
0.50382%
Published
11/27/2023
Updated
11/28/2023
KEV Status
No
Technology
TechnologyGo

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
github.com/mattermost/mattermost/server/v8go< 8.1.48.1.4
github.com/mattermost/mattermost-server/v6go< 7.8.137.8.13

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

M*tt*rmost **ils to prop*rly v*li**t* t** "S*ow *ull N*m*" option in * **w *n*points in M*tt*rmost *o*r*s, *llowin* * m*m**r to **t t** *ull n*m* o* *not**r us*r *v*n i* t** S*ow *ull N*m* option w*s *is**l**. 

Reasoning

No *n*lysis *v*il**l*