CVE-2023-4108 — Log File Information Exposure in Mattermost Mattermost-server V6
Severity
7.5HIGHNVD
CNA4.5
EPSS
0.2%
top 63.34%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 11
Description
Mattermost fails to sanitize post metadata during audit logging resulting in permalinks contents being logged
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6