Authorization Token Exposure in Mattermost Mobile Apps on iOS
CVE-2020-13891
7.5HIGH
Summary
Mattermost Mobile Apps prior to version 1.31.2 for iOS are susceptible to a vulnerability that allows unintended third-party servers to gain unauthorized access to authorization tokens. This issue, identified as MMSA-2020-0022, can lead to potential security risks for users. It is imperative for users of these apps to update to the latest version to mitigate this risk.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved