Beveiligingsadvies

CVE-2022-2366

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-07-11 14:08:50
Laatst bijgewerkt 2024-12-06 23:08:46
Toegewezen door Mattermost
CVSS-score 5.6
Status PUBLISHED

Beschrijving

Incorrect default configuration for trusted IP header in Mattermost version 6.7.0 and earlier allows attacker to bypass some of the rate limitations in place or use manipulated IPs for audit logging via manipulating the request headers.