CVE-2018-21257

Publication date

2020-06-19 16:51:47

Family

mitre

State

PUBLISHED

Description

An issue was discovered in Mattermost Server before 5.1. It allows attackers to bypass intended access restrictions (for setting a channel header) via the Channel header slash command API.