First published: Mon Mar 15 2021(Updated: )
If was found that the NetTest web service can be used to overload the bandwidth of a Apache OpenMeetings server. This issue was addressed in Apache OpenMeetings 6.0.0
Credit: security@apache.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache OpenMeetings | >=4.0.0<6.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27576 has a medium severity rating due to its potential for bandwidth overload.
To fix CVE-2021-27576, update your Apache OpenMeetings server to version 6.0.0 or later.
Exploitation of CVE-2021-27576 can lead to denial of service by overloading the server's bandwidth.
CVE-2021-27576 affects Apache OpenMeetings versions from 4.0.0 up to, but not including, 6.0.0.
Yes, the patch for CVE-2021-27576 is included in the upgrade to Apache OpenMeetings 6.0.0.