Mattermost iOS app fails to properly validate the server certificate while initializing the TLS connection allowing a network attacker to intercept the WebSockets connection.
References
Link | Resource |
---|---|
https://mattermost.com/security-updates | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2023-07-17 16:15
Updated : 2023-07-26 21:37
NVD link : CVE-2023-3615
Mitre link : CVE-2023-3615
CVE.ORG link : CVE-2023-3615
JSON object : View
Products Affected
mattermost
- mattermost
CWE
CWE-295
Improper Certificate Validation