CVE-2023-3586
published 2023-07-17CVE-2023-3586: Mattermost fails to disable public Boards after the "Enable Publicly-Shared Boards" configuration option is disabled, resulting in previously-shared public…
medium5.4CVSS 3.1
AVNACLPRLUINSUCLILAN
Mattermost fails to disable public Boards after the "Enable Publicly-Shared Boards" configuration option is disabled, resulting in previously-shared public Boards to remain accessible.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | linux_kernel | >= 0 < 4.4.0-240.274 | 4.4.0-240.274 |
| mattermost | mattermost | <= 7.8.6 | — |
| mattermost | mattermost_server | >= 7.10.0 < 7.10.3 | 7.10.3 |
| mattermost | mattermost_server | >= 7.8.0 < 7.8.7 | 7.8.7 |
| mattermost | mattermost_server | >= 7.9.0 < 7.9.5 | 7.9.5 |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
osv5.5MEDIUM