CVE-2021-37862

3.7LOW

Mattermost 6.0 and earlier fails to sufficiently validate the email address during registration, which allows attackers to trick users into signing up using attacker-controlled email addresses via cra

发布于: 12/17/2021更新于: 11/21/2024

描述

Mattermost 6.0 and earlier fails to sufficiently validate the email address during registration, which allows attackers to trick users into signing up using attacker-controlled email addresses via crafted invitation token.

AI分析AI驱动

受影响产品

mattermostmattermost_server

参考资料