CVE-2017-7673 Vulnerability Details

  /     /     /  

CVE-2017-7673 Metadata Quick Info

CVE Published: 14/07/2017 | CVE Updated: 05/08/2024 | CVE Year: 2017
Source: apache | Vendor: Apache Software Foundation | Product: Apache OpenMeetings
Status : PUBLISHED

CVE-2017-7673 Description

Apache OpenMeetings 1.0.0 uses not very strong cryptographic storage, captcha is not used in registration and forget password dialogs and auth forms missing brute force protection.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: n/a
Source: Apache Software Foundation

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).