In Apache OpenMeetings 3.0.0 - 4.0.1, CRUD operations on privileged users are not password protected allowing an authenticated malicious user to deny service for privileged users.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apache openmeetings |