Vulnerabilities > CVE-2022-1548 - Unspecified vulnerability in Mattermost Playbooks

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
mattermost

Summary

Mattermost Playbooks plugin 1.25 and earlier fails to properly restrict user-level permissions, which allows playbook members to escalate their membership privileges and perform actions restricted to playbook admins.

Vulnerable Configurations

Part Description Count
Application
Mattermost
112