BigBlueButton是BigBlueButton社区的一套开源的Web会议系统。 Greenlight BigBlueButton 2.3之前版本存在安全漏洞,该漏洞源于没有实现LibreOffice沙箱。这可能使远程认证用户更容易读取bigbluebutton中的API共享秘密。属性文件。使用API共享秘密,攻击者可利用该漏洞可以(例如)使用API join来加入任意会议,而不管其来宾策略设置如何。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-7750 | 9.6 CRITICAL | Cross-site Scripting (XSS) |
| CVE-2020-27611 | BigBlueButton 加密问题漏洞 | |
| CVE-2020-17381 | Ghisler Total Commander 安全漏洞 | |
| CVE-2020-26895 | Lightning Network Daemon 安全漏洞 | |
| CVE-2020-26896 | Lightning Network Daemon 安全漏洞 | |
| CVE-2020-25820 | BigBlueButton 代码问题漏洞 | |
| CVE-2020-27602 | BigBlueButton 注入漏洞 | |
| CVE-2020-27606 | BigBlueButton 安全漏洞 | |
| CVE-2020-27608 | BigBlueButton 跨站脚本漏洞 | |
| CVE-2020-27610 | BigBlueButton 信息泄露漏洞 | |
| CVE-2020-27612 | BigBlueButton 信息泄露漏洞 | |
| CVE-2020-27613 | BigBlueButton 安全漏洞 | |
| CVE-2020-17355 | Arista Networks Arista EOS 安全漏洞 | |
| CVE-2020-27609 | BigBlueButton 安全漏洞 | |
| CVE-2020-27607 | BigBlueButton 安全漏洞 | |
| CVE-2020-27605 | BigBlueButton 安全漏洞 | |
| CVE-2020-27603 | BigBlueButton 安全漏洞 | |
| CVE-2020-27601 | BigBlueButton 安全漏洞 | |
| CVE-2018-11764 | Apache Hadoop 访问控制错误漏洞 | |
| CVE-2020-27344 | WordPress cm-download-manager 跨站脚本漏洞 |
Showing top 20 of 23 CVEs. View all on vendor page → →
No comments yet