CVE-2024-33850: Medium severity pexip infinity vulnerability
Published Jun 10, 2024
·Updated
Pexip Infinity before 34.1 has Improper Access Control for persons in a waiting room. They can see the conference roster list, and perform certain actions that should not be allowed before they are admitted to the meeting.
Affected Software
2 affected components
Pexip Infinity<34.1
Pexip Pexip Infinity<34.1
Event History
Jun 10, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-33850?
CVE-2024-33850 has a medium severity due to improper access control in Pexip Infinity.
2
How do I fix CVE-2024-33850?
To fix CVE-2024-33850, upgrade Pexip Infinity to version 34.1 or later.
3
What systems are affected by CVE-2024-33850?
CVE-2024-33850 affects all versions of Pexip Infinity prior to 34.1.
4
What are the implications of CVE-2024-33850?
CVE-2024-33850 allows unauthorized persons in a waiting room to view the conference roster and perform restricted actions.
5
Is CVE-2024-33850 a critical vulnerability?
CVE-2024-33850 is not classified as critical, but it poses significant privacy and security risks.