CVE-2023-5194
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Sep 29, 2023
Updated: Oct 3, 2023
CWE ID 79
Summary
CVE-2023-5194 is a vulnerability affecting Mattermost, an open-source team collaboration platform. The issue arises from a failure to adequately validate permissions during user demotion and deactivation processes. This flaw enables a system or user manager to bypass permissions and demote or deactivate another manager, potentially disrupting workflows and threatening security within the organization.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share