CVE-2022-31461: Owl Labs Meeting Owl Missing Authentication for Critical Function Vulnerability
Owl Labs Meeting Owl 5.2.0.15 allows attackers to deactivate the passcode protection mechanism via a certain c 11 message.
Other sources
Owl Labs Meeting Owl contains a missing authentication for critical functions vulnerability that allows an attacker to deactivate the passcode protection mechanism via a certain c 11 message.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-31461?
CVE-2022-31461 is a vulnerability found in Owl Labs Meeting Owl which allows an attacker to deactivate the passcode protection mechanism.
What is the severity of CVE-2022-31461?
CVE-2022-31461 has a severity value of 6.5, which is considered high.
How does CVE-2022-31461 affect Owl Labs Meeting Owl Pro Firmware?
CVE-2022-31461 affects Owl Labs Meeting Owl Pro Firmware version up to exclusive 5.4.2.3.
Is Owl Labs Meeting Owl Pro affected by CVE-2022-31461?
No, Owl Labs Meeting Owl Pro is not affected by CVE-2022-31461.
How can I fix CVE-2022-31461?
To fix CVE-2022-31461, update Owl Labs Meeting Owl Pro Firmware to a version higher than 5.4.2.3.