CVE Radar Logo
CVERadar
CVE Radar Logo
CVERadar

CVE-2024-47003

High Severity
Mattermost
SVRS
61/100

CVSSv3
6.5/10

EPSS
0.00078/1

CVE-2024-47003: Mattermost versions 9.11.x and 9.5.x suffer from a vulnerability where the system doesn't properly validate the message type of permalink posts. This allows an attacker to crash the frontend by sending a non-string value as the message. The vulnerability, while having a CVSS score of 6.5, has a SOCRadar Vulnerability Risk Score (SVRS) of 61, indicating a moderate risk. Although not critical (SVRS > 80), its presence "In The Wild" increases the potential for exploitation. Successful exploitation could lead to denial of service for users accessing affected Mattermost instances. Immediate patching is not mandatory, but monitoring for suspicious activity and applying updates when available is recommended to prevent potential disruptions. This is significant because it impacts the availability of the communication platform.

In The Wild
CVSS:3.1
AV:N
AC:L
PR:L
UI:N
S:U
C:N
I:N
A:H
2024-09-26

2024-09-26
Eye Icon
SOCRadar
AI Insight

Description

CVE-2024-47003 is a vulnerability in Mattermost, a popular open-source team communication platform. The vulnerability allows an attacker to crash the frontend of Mattermost by sending a non-string value as the message of a permalink post. This could lead to a denial-of-service attack, preventing users from accessing the platform.

Key Insights

  • The SVRS for CVE-2024-47003 is 46, indicating a moderate level of severity.
  • The vulnerability is relatively easy to exploit, as it only requires an attacker to send a specially crafted message to a Mattermost server.
  • The vulnerability could be used to launch a denial-of-service attack, preventing users from accessing the platform.

Mitigation Strategies

  • Update Mattermost to version 9.11.1 or 9.5.9 or later.
  • Block untrusted users from sending messages to the Mattermost server.
  • Implement a web application firewall (WAF) to block malicious requests.

Additional Information

  • There are no known threat actors or APT groups actively exploiting this vulnerability.
  • There are no active exploits for this vulnerability.
  • CISA has not issued a warning for this vulnerability.
  • The vulnerability is not known to be used in the wild.

If users have additional queries regarding this incident, they can use the 'Ask to Analyst' feature, contact SOCRadar directly, or open a support ticket for more information if necessary.

Indicators of Compromise

No IOCs found for this CVE

Exploits

No exploits found for this CVE

Enhance Your CVE Management with SOCRadar Vulnerability Intelligence
Get comprehensive CVE details, real-time notifications, and proactive threat management all in one platform.
CVE Details
Access comprehensive CVE information instantly
Real-time Tracking
Subscribe to CVEs and get instant updates
Exploit Analysis
Monitor related APT groups and threats
IOC Tracking
Analyze and track CVE-related IOCs

News

CVE-2024-47003 | Mattermost up to 9.5.8/9.11.0 Permalink Post resource consumption (Nessus ID 209296)
vuldb.com2024-10-19
CVE-2024-47003 | Mattermost up to 9.5.8/9.11.0 Permalink Post resource consumption (Nessus ID 209296) | A vulnerability was found in Mattermost up to 9.5.8/9.11.0. It has been classified as problematic. This affects an unknown part of the component Permalink Post. The manipulation leads to resource consumption. This vulnerability is uniquely identified as CVE-2024-47003. It is possible to initiate the attack remotely
vuldb.com
rss
forum
news
CVE-2024-47003 | Mattermost up to 9.5.8/9.11.0 Permalink Post resource consumption
vuldb.com2024-09-26
CVE-2024-47003 | Mattermost up to 9.5.8/9.11.0 Permalink Post resource consumption | A vulnerability was found in Mattermost up to 9.5.8/9.11.0. It has been classified as problematic. This affects an unknown part of the component Permalink Post. The manipulation leads to resource consumption. This vulnerability is uniquely identified as CVE-2024-47003. It is possible to initiate the attack remotely. There is no
cve-2024-47003
domains
urls
cves

Social Media

CVE-2024-47003 Mattermost versions 9.11.x <= 9.11.0 and 9.5.x <= 9.5.8 fail to validate that the message of the permalink post is a string, which allows an attacker to send a non-st… https://t.co/lfmArhQ4BT
0
0
0

Affected Software

Configuration 1
TypeVendorProduct
AppMattermostmattermost_server

References

ReferenceLink
[email protected]https://mattermost.com/security-updates

CWE Details

CWE IDCWE NameDescription
CWE-400Uncontrolled Resource ConsumptionThe software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.

CVE Radar

Real-time CVE Intelligence & Vulnerability Management Platform

CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.

Get Free Vulnerability Intelligence AccessAccess real-time CVE monitoring, exploit analysis, and threat intelligence