Severity: important

Affected versions:

- Apache OpenMeetings 3.1.3 before 7.1.0

Description:

An attacker that has gained access to certain private information can use this 
to act as other user.

Vendor: The Apache Software Foundation

Versions Affected: Apache OpenMeetings from 3.1.3 before 7.1.0

This issue is being tracked as OPENMEETINGS-2764 

Credit:

Stefan Schiller (reporter)

References:

https://openmeetings.apache.org/
https://www.cve.org/CVERecord?id=CVE-2023-29032
https://issues.apache.org/jira/browse/OPENMEETINGS-2764

Ответить