Vulnerabilities > CVE-2017-18871 - Unspecified vulnerability in Mattermost Server

047910
CVSS 5.0 - MEDIUM
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

An issue was discovered in Mattermost Server before 4.5.0, 4.4.5, 4.3.4, and 4.2.2. It allows attackers to cause a denial of service (application crash) via an @ character before a JavaScript field name.

Vulnerable Configurations

Part Description Count
Application
Mattermost
109