Vulnerabilities > CVE-2019-20881 - Improper Restriction of Excessive Authentication Attempts vulnerability in Mattermost Server

047910
CVSS 7.3 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
LOW
network
low complexity
mattermost
CWE-307

Summary

An issue was discovered in Mattermost Server before 5.8.0. It mishandles brute-force attacks against MFA.

Vulnerable Configurations

Part Description Count
Application
Mattermost
290