Description
Mattermost fails to delete card attachments in Boards, allowing an attacker to access deleted attachments.
No analysis available yet.
Remediation
Vendor Solution
Update Mattermost Server to versions v7.10.3 or higher.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44240 | Mattermost fails to delete card attachments in Boards, allowing an attacker to access deleted attachments. |
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
History
Mon, 21 Oct 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-10-21T19:43:23.581Z
Reserved: 2023-07-10T15:01:13.653Z
Link: CVE-2023-3590
Updated: 2024-08-02T07:01:56.913Z
Status : Modified
Published: 2023-07-17T16:15:10.857
Modified: 2024-11-21T08:17:37.127
Link: CVE-2023-3590
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD