PublicCVE

CVE-2018-1286

UNRATEDJSON exportCreate alert

Description

In Apache OpenMeetings 3.0.0 - 4.0.1, CRUD operations on privileged users are not password protected allowing an authenticated attacker to deny service for privileged users.

Affected products