Description
Apache OpenMeetings 1.0.0 uses not very strong cryptographic storage, captcha is not used in registration and forget password dialogs and auth forms missing brute force protection.
Remediation
References
http://markmail.org/message/3hshl26omwjo6c5i
http://www.securityfocus.com/bid/99587
Related Vulnerabilities
CVE-2020-28267 Vulnerability in npm package @strikeentco/set
CVE-2022-3783 Vulnerability in npm package node-red-dashboard
CVE-2023-33544 Vulnerability in maven package io.hawt:hawtio-system
CVE-2020-11991 Vulnerability in maven package org.apache.cocoon:cocoon-core
CVE-2019-1003049 Vulnerability in maven package org.jenkins-ci.main:jenkins-core