CVE-2021-27576

Severity
7.5HIGH
EPSS
4.5%
top 10.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 15
Latest updateJun 16

Description

If was found that the NetTest web service can be used to overload the bandwidth of a Apache OpenMeetings server. This issue was addressed in Apache OpenMeetings 6.0.0

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages3 packages

CVEListV5apache_software_foundation/apache_openmeetings4.0.0Apache OpenMeetings 4*+1
NVDapache/openmeetings4.0.06.0.0

🔴Vulnerability Details

3
OSV
Uncontrolled Resource Consumption in Apache OpenMeetings server2021-06-16
GHSA
Uncontrolled Resource Consumption in Apache OpenMeetings server2021-06-16
CVEList
Apache OpenMeetings: bandwidth can be overloaded with public web service2021-03-15
CVE-2021-27576 (HIGH CVSS 7.5) | If was found that the NetTest web s | cvebase.io