[ANNOUNCE] CVE-2018-1286 - Apache OpenMeetings - Insufficient Access Controls

2018-02-25 Thread Maxim Solodovnik
Severity: Medium Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings 3.0.0 Description: CRUD operations on privileged users are not password protected allowing an authenticated attacker to deny service for privileged users. The issue was fixed in 4.0.2 All users are r

[ANNOUNCE] Apache OpenMeetings 4.0.2 released

2018-02-25 Thread Maxim Solodovnik
The Apache OpenMeetings project is pleased to announce the release of Apache OpenMeetings 4.0.2. The release is available for download from http://openmeetings.apache.org/downloads.html Apache OpenMeetings provides video conferencing, instant messaging, white board, collaborative document editing