Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-37864

Mattermost 6.1 and earlier fails to sufficiently validate permissions while viewing archived channels, which allows authenticated users to view contents of archived channels even when this is denied by system administrators by directly accessing the APIs.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.7%
CVSS Severity
CVSS v3 Score 2.6
CVSS v2 Score 4.0
Products affected by CVE-2021-37864


Contact Us

Shodan ® - All rights reserved