Lucene search

K
osvGoogleOSV:GHSA-CV9J-7Q4X-V2G2
HistoryMay 13, 2022 - 1:49 a.m.

Apache OpenMeetings may allow authenticated attacker to deny service for privileged users

2022-05-1301:49:39
Google
osv.dev
6

0.001 Low

EPSS

Percentile

41.3%

In Apache OpenMeetings 3.0.0 - 4.0.1, CRUD operations on privileged users are not password protected allowing an authenticated attacker to deny service for privileged users. The issue is fixed in version 4.0.2.

0.001 Low

EPSS

Percentile

41.3%

Related for OSV:GHSA-CV9J-7Q4X-V2G2