Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-29246
HistoryMay 12, 2023 - 8:15 a.m.

Design/Logic Flaw

2023-05-1208:15:00
PRIOn knowledge base
www.prio-n.com
4
logic flaw
admin account access
apache openmeetings
version 7.1.0
null-byte injection
information security

6.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

30.7%

An attacker who has gained access to an admin account can perform RCE via null-byte injection

Vendor: The Apache Software Foundation

Versions Affected: Apache OpenMeetings from 2.0.0 before 7.1.0

CPENameOperatorVersion
openmeetingsge2.0.0
openmeetingslt7.1.0

6.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

30.7%