CVE-2020-29042: Medium severity bigbluebutton vulnerability
Published Nov 26, 2020
·Updated
An issue was discovered in BigBlueButton through 2.2.29. A brute-force attack may occur because an unlimited number of codes can be entered for a meeting that is protected by an access code.
Affected Software
1 affected component
BigBlueButton BigBlueButton<=2.2.29
Event History
Nov 26, 2020
CVE Published
via MITRE·05:51 PM
Data Sourced
via MITRE·05:51 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-29042.
2
What is the severity of CVE-2020-29042?
The severity of CVE-2020-29042 is medium with a severity value of 3.7.
3
What is the affected software?
The affected software is BigBlueButton 2.2.29.
4
What is the description of CVE-2020-29042?
CVE-2020-29042 is an issue in BigBlueButton through 2.2.29 where a brute-force attack may occur due to unlimited code entries for a protected meeting.
5
How can I fix the CVE-2020-29042 vulnerability?
To fix the CVE-2020-29042 vulnerability, update your BigBlueButton installation to a version higher than 2.2.29.