CyberSec.Space Logo
CVEブラウザに戻る

CVE-2020-26163

HIGH
8.8
CVSS Severity Score
EPSS Score0.1580%
EPSS Percentile41.03th
Published2020年9月30日
Last Modified2024年11月21日

Vulnerability Description

BigBlueButton Greenlight before 2.5.6 allows HTTP header (Host and Origin) attacks, which can result in Account Takeover if a victim follows a spoofed password-reset link.

Affected Platforms (CPE)

📦
Bigbluebutton

Greenlight

< 2.5.6

References & Advisories

関連する脆弱性情報