CVE-2019-20874
published 2020-06-19CVE-2019-20874: An issue was discovered in Mattermost Server before 5.9.0, 5.8.1, 5.7.3, and 4.10.8. It allows attackers to obtain sensitive information during a role change.
high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
An issue was discovered in Mattermost Server before 5.9.0, 5.8.1, 5.7.3, and 4.10.8. It allows attackers to obtain sensitive information during a role change.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mattermost | mattermost_server | < 4.10.8 | 4.10.8 |
| mattermost | mattermost_server | — | — |
| mattermost | mattermost_server | >= 5.7.0 < 5.7.3 | 5.7.3 |
| mattermost | mattermost_server | >= 5.8.0 < 5.8.1 | 5.8.1 |