Description
Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.0.0 before 7.0.0 Description: Attacker can elevate their privileges in any room
Remediation
References
https://lists.apache.org/thread/r9vn12dp5yofn1h3wd5x4h7c3vmmr5d9
Related Vulnerabilities
CVE-2023-24456 Vulnerability in maven package org.jenkins-ci.plugins:keycloak
CVE-2021-22047 Vulnerability in maven package org.springframework.data:spring-data-rest-core
CVE-2022-34787 Vulnerability in maven package hudson.plugins:project-inheritance
CVE-2021-21290 Vulnerability in maven package io.netty:netty-common
CVE-2023-28709 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core