CVE-2023-4478
CVSS 3.1 Score 8.2 of 10 (high)
Details
Published Aug 25, 2023
Updated: Aug 31, 2023
CWE ID 74
Summary
CVE-2023-4478 is a vulnerability affecting Mattermost, an open-source team collaboration platform. The issue arises from Mattermost's failure to adequately restrict input during the sign-up process. An attacker can exploit this weakness by registering users with malicious parameters, resulting in the creation of inactive accounts. These inactive accounts subsequently block users from accessing Mattermost without administrative intervention to activate the accounts.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share