CVE Published: 28/02/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: apache |
Vendor: Apache Software Foundation |
Product: Apache OpenMeetings Status : PUBLISHED
CVE-2018-1286 Description
In Apache OpenMeetings 3.0.0 - 4.0.1, CRUD operations on privileged users are not password protected allowing an authenticated attacker to deny service for privileged users.