Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-42974
HistoryMay 17, 2023 - 12:00 a.m.

Apache OpenMeetings Code Execution Vulnerability

2023-05-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
4
apache
openmeetings
code execution
vulnerability
input validation
video conferencing
collaboration system
apache foundation
audio
video
desktop

0.001 Low

EPSS

Percentile

30.7%

Apache OpenMeetings is a multilingual, customizable video conferencing and collaboration system from the Apache Foundation. The product supports audio, video and allows users to view each participant’s desktop and more. A code execution vulnerability exists in Apache OpenMeetings versions 2.0.0 through 7.1.0, which stems from improper input validation in the application and can be exploited by an attacker to execute arbitrary code on the system.

CPENameOperatorVersion
apache openmeetings >=2.0.0,le7.1.0

0.001 Low

EPSS

Percentile

30.7%