Vulnerability Details CVE-2023-4107
Mattermost fails to properly validate the requesting user permissions when updating a system admin, allowing a user manager to update a system admin's details such as email, first name and last name.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 41.0%
CVSS Severity
CVSS v3 Score 6.7
Products affected by CVE-2023-4107
-
cpe:2.3:a:mattermost:mattermost:*