Zip Bomb Vulnerability in Mattermost Boards Import

Zip Bomb Vulnerability in Mattermost Boards Import

CVE-2023-48268 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards allowing an attacker to consume excessive resources, possibly leading to Denial of Service, by importing a board using a specially crafted zip (zip bomb).

Learn more about our Web Application Penetration Testing UK.