oss-sec mailing list archives

CVE-2021-27576: Apache OpenMeetings: bandwidth can be overloaded with public web service


From: Maxim Solodovnik <solomax () apache org>
Date: Sat, 13 Mar 2021 18:29:46 +0700

Description:

NetTest web service can be used to overload the bandwidth of the server

Versions Affected: 4.0.0 - 5.1.0

References:

https://lists.apache.org/thread.html/r9bb615bd70a0197368f5f3ffc887162686caeb0b5fc30592a7a871e9%40%3Cuser.openmeetings.apache.org%3E


Current thread: