• caglararli@hotmail.com
  • 05386281520

CVE-2023-45316 | Mattermost up to 7.8.14/8.1.5/9.0.3/9.1.2/9.2.1 Telemetry Run ID path traversal

Çağlar Arlı      -    91 Views

CVE-2023-45316 | Mattermost up to 7.8.14/8.1.5/9.0.3/9.1.2/9.2.1 Telemetry Run ID path traversal

A vulnerability classified as critical was found in Mattermost up to 7.8.14/8.1.5/9.0.3/9.1.2/9.2.1. Affected by this vulnerability is an unknown functionality of the file /plugins/playbooks/api/v0/telemetry/run/ of the component Telemetry Run ID Handler. The manipulation leads to path traversal. This vulnerability is known as CVE-2023-45316. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.