CVE-2020-14455: Medium severity mattermost desktop vulnerability
Published Jun 19, 2020
·Updated
An issue was discovered in Mattermost Desktop App before 4.4.0. Prompting for HTTP Basic Authentication is mishandled, allowing phishing, aka MMSA-2020-0007.
Affected Software
1 affected component
Mattermost Mattermost Desktop<4.4.0
Event History
Jun 19, 2020
CVE Published
via MITRE·01:11 PM
Data Sourced
via MITRE·01:11 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue in Mattermost Desktop App?
The vulnerability ID for this issue in Mattermost Desktop App is CVE-2020-14455.
2
What is the severity of CVE-2020-14455?
The severity of CVE-2020-14455 is medium (6.5).
3
What is the affected software for CVE-2020-14455?
The affected software for CVE-2020-14455 is Mattermost Desktop App version up to and excluding 4.4.0.
4
What is the vulnerability description for CVE-2020-14455?
CVE-2020-14455 is a vulnerability in Mattermost Desktop App that mishandles prompting for HTTP Basic Authentication, allowing phishing attacks.
5
How can I fix the vulnerability in Mattermost Desktop App?
To fix the vulnerability in Mattermost Desktop App, update to version 4.4.0 or later.