CVE-2024-28053
CVSS 3.1 Score 3.1 of 10 (low)
Details
Published Mar 15, 2024
CWE ID 400
Summary
CVE-2024-28053 is a resource exhaustion vulnerability affecting Mattermost Server versions 8.1.x before 8.1.10. This issue allows an attacker to send an unusually large email payload, which the server fails to limit, resulting in excessive resource consumption and eventual server crash. The attack can be executed through the email handling functionality, potentially leading to denial of service (DoS) attacks. Users are advised to update to the patched version as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share