CVE-2023-28936

CVE-2023-28936: Apache OpenMeetings: insufficient check of invitation hash

Vendor Apache Software Foundation
Product Apache OpenMeetings
Weakness CWE-697
Published May 12, 2023
Last update October 10, 2024

CVSS base score

What the vulnerability does

Description

Attacker can access arbitrary recording/room Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.0.0 before 7.1.0

Key dates

Disclosure timeline

May 12, 2023 CVE published
October 10, 2024 Record updated