Beveiligingsadvies

CVE-2022-36028

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-04-25 20:36:37
Laatst bijgewerkt 2024-08-03 09:51:59
Toegewezen door GitHub_M
CVSS-score 9.1
Status PUBLISHED

Beschrijving

Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue.