PT-2023-3158 · Apache · Apache Openmeetings

Stefan Schiller

·

Publicado

2023-05-12

·

Atualizado

2024-10-11

·

CVE-2023-28936

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Apache OpenMeetings versions 2.0.0 through 7.1.0
Description The issue is related to insufficient comparison in the Apache OpenMeetings video conferencing software. Exploitation of this issue may allow a remote attacker to gain unauthorized access to protected information.
Recommendations For Apache OpenMeetings versions 2.0.0 through 7.1.0, update to a version after 7.1.0 to resolve the issue.

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-03257
CVE-2023-28936
GHSA-V93H-RWJ8-78QH

Produtos afetados

Apache Openmeetings