CVE-2023-28936: Apache OpenMeetings: insufficient check of invitation hash
Published May 12, 2023
·Updated
Attacker can access arbitrary recording/room
Vendor: The Apache Software Foundation
Versions Affected: Apache OpenMeetings from 2.0.0 before 7.1.0
Affected Software
1 affected component
Apache OpenMeetings>=2.0.0<7.1.0
Event History
May 12, 2023
CVE Published
via MITRE·07:45 AM
Data Sourced
via MITRE·07:45 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2023-28936?
CVE-2023-28936 is a vulnerability that allows an attacker to access arbitrary recording/room in Apache OpenMeetings versions 2.0.0 through 7.1.0.
2
How severe is CVE-2023-28936?
CVE-2023-28936 has a severity rating of 5.3 (Medium).
3
What software versions are affected by CVE-2023-28936?
CVE-2023-28936 affects Apache OpenMeetings versions 2.0.0 through 7.1.0.