CVE Database
/

CVE-2017-0910

Back to search

CVE-2017-0910

Published: Nov 27, 2017

Modified: Sep 17, 2024

PUBLISHED

Description

In Zulip Server before 1.7.1, on a server with multiple realms, a vulnerability in the invitation system lets an authorized user of one realm on the server create a user account on any other realm.

VendorProductVersions

Zulip

Zulip Server

affected
before 1.7.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now