Show filters
263 Total Results
Displaying 21-30 of 263
Sort by:
Attacker Value
Unknown

CVE-2023-29246

Disclosure Date: May 12, 2023 (last updated October 08, 2023)
An attacker who has gained access to an admin account can perform RCE via null-byte injection Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.0.0 before 7.1.0
Attacker Value
Unknown

CVE-2023-29032

Disclosure Date: May 12, 2023 (last updated October 08, 2023)
An attacker that has gained access to certain private information can use this to act as other user. Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 3.1.3 before 7.1.0
Attacker Value
Unknown

CVE-2023-28936

Disclosure Date: May 12, 2023 (last updated October 08, 2023)
Attacker can access arbitrary recording/room Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.0.0 before 7.1.0
Attacker Value
Unknown

CVE-2023-20132

Disclosure Date: April 05, 2023 (last updated October 08, 2023)
Multiple vulnerabilities in the web interface of Cisco Webex Meetings could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack or upload arbitrary files as recordings. For more information about these vulnerabilities, see the Details section of this advisory.
Attacker Value
Unknown

CVE-2023-20134

Disclosure Date: April 05, 2023 (last updated October 08, 2023)
Multiple vulnerabilities in the web interface of Cisco Webex Meetings could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack or upload arbitrary files as recordings. For more information about these vulnerabilities, see the Details section of this advisory.
Attacker Value
Unknown

CVE-2023-28326

Disclosure Date: March 28, 2023 (last updated November 08, 2023)
Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.0.0 before 7.0.0 Description: Attacker can elevate their privileges in any room
Attacker Value
Unknown

CVE-2023-22883

Disclosure Date: March 14, 2023 (last updated October 08, 2023)
Zoom Client for IT Admin Windows installers before version 5.13.5 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability in an attack chain during the installation process to escalate their privileges to the SYSTEM user.
Attacker Value
Unknown

CVE-2023-28596

Disclosure Date: March 14, 2023 (last updated October 08, 2023)
Zoom Client for IT Admin macOS installers before version 5.13.5 contain a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability in an attack chain during the installation process to escalate their privileges to privileges to root.
Attacker Value
Unknown

CVE-2022-28766

Disclosure Date: November 15, 2022 (last updated December 22, 2024)
Windows 32-bit versions of the Zoom Client for Meetings before 5.12.6 and Zoom Rooms for Conference Room before version 5.12.6 are susceptible to a DLL injection vulnerability. A local low-privileged user could exploit this vulnerability to run arbitrary code in the context of the Zoom client.
Attacker Value
Unknown

CVE-2022-28768

Disclosure Date: November 15, 2022 (last updated December 22, 2024)
The Zoom Client for Meetings Installer for macOS (Standard and for IT Admin) before version 5.12.6 contains a local privilege escalation vulnerability. A local low-privileged user could exploit this vulnerability during the install process to escalate their privileges to root.