Vulnerabilities > Mattermost > Mattermost Server > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-06-19 CVE-2017-18874 Path Traversal vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2 when local storage for files is used.
network
low complexity
mattermost CWE-22
6.5
2020-06-19 CVE-2018-21256 Incorrect Permission Assignment for Critical Resource vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.1.
network
low complexity
mattermost CWE-732
4.3
2020-06-19 CVE-2018-21252 Incorrect Permission Assignment for Critical Resource vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.2, 5.1.1, 5.0.3, and 4.10.3.
network
low complexity
mattermost CWE-732
4.3
2020-06-19 CVE-2017-18873 Improper Input Validation vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2.
network
low complexity
mattermost CWE-20
5.3
2020-06-19 CVE-2017-18872 Incorrect Permission Assignment for Critical Resource vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.4.3 and 4.3.3.
network
low complexity
mattermost CWE-732
4.3
2020-06-19 CVE-2019-20890 Unspecified vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.7.
network
low complexity
mattermost
4.3
2020-06-19 CVE-2019-20889 Incorrect Default Permissions vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.7, 5.6.3, 5.5.2, and 4.10.5.
network
low complexity
mattermost CWE-276
5.3
2020-06-19 CVE-2019-20887 Missing Authorization vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.7.1, 5.6.4, 5.5.3, and 4.10.6.
network
low complexity
mattermost CWE-862
4.3
2020-06-19 CVE-2019-20884 Unspecified vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.8.0.
network
low complexity
mattermost
5.3
2020-06-19 CVE-2019-20883 Unspecified vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.8.0, when Town Square is set to Read-Only.
network
low complexity
mattermost
4.3