Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
BigBlueButton Greenlight before 2.5.6 allows HTTP header (Host and Origin) attacks, which can result in Account Takeover if a victim follows a spoofed password-reset link.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BigBlueButton Greenlight 安全漏洞
Vulnerability Description
BigBlueButton是BigBlueButton社区的一套开源的Web会议系统。 BigBlueButton Greenlight 2.5.6之前版本存在安全漏洞,该漏洞源于允许HTTP头(主机和源)攻击,如果受害者遵循欺骗的密码重置链接,就会导致账户接管。
CVSS Information
N/A
Vulnerability Type
N/A