Description
Apache OpenMeetings 1.0.0 uses not very strong cryptographic storage, captcha is not used in registration and forget password dialogs and auth forms missing brute force protection.
Remediation
References
http://markmail.org/message/3hshl26omwjo6c5i
http://www.securityfocus.com/bid/99587
Related Vulnerabilities
CVE-2017-12612 Vulnerability in maven package org.apache.spark:spark-core_2.10
CVE-2021-41183 Vulnerability in maven package org.webjars:jquery-ui
CVE-2019-10356 Vulnerability in maven package org.jenkins-ci.plugins:script-security
CVE-2021-36737 Vulnerability in maven package org.apache.portals.pluto.demo:v3-demo-portlet
CVE-2019-1003057 Vulnerability in maven package org.jenkins-ci.plugins:bitbucket-approve