Vulnerabilities > CVE-2020-14447 - Infinite Loop vulnerability in Mattermost Server

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
mattermost
CWE-835

Summary

An issue was discovered in Mattermost Server before 5.23.0. Large webhook requests allow attackers to cause a denial of service (infinite loop), aka MMSA-2020-0021.

Vulnerable Configurations

Part Description Count
Application
Mattermost
467