CVE-2023-48268

MEDIUM4.3EPSS 0.09%

Mattermost Uncontrolled Resource Consumption vulnerability

發布日:2023/11/27修改日:2026/2/4

描述

Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards allowing an attacker to consume excessive resources, possibly leading to Denial of Service, by importing a board using a specially crafted zip (zip bomb).

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM4.3CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

參考連結(3)