Vulnerabilities > Bigbluebutton

DATE CVE VULNERABILITY TITLE RISK
2022-12-17 CVE-2022-23488 Exposure of Resource to Wrong Sphere vulnerability in Bigbluebutton 2.4
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-668
7.5
2022-12-16 CVE-2022-23490 Incorrect Authorization vulnerability in Bigbluebutton
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-863
4.3
2022-12-16 CVE-2022-41964 Information Exposure vulnerability in Bigbluebutton 2.4
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-200
5.7
2022-12-16 CVE-2022-41961 Origin Validation Error vulnerability in Bigbluebutton 2.4
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-346
4.3
2022-12-16 CVE-2022-41962 Incorrect Authorization vulnerability in Bigbluebutton 2.4
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-863
2.7
2022-09-29 CVE-2020-27601 Exposure of Resource to Wrong Sphere vulnerability in Bigbluebutton
In BigBlueButton before 2.2.7, lockSettingsProps.disablePrivateChat does not apply to already opened chats.
network
low complexity
bigbluebutton CWE-668
3.5
2022-09-29 CVE-2020-27602 Injection vulnerability in Bigbluebutton
BigBlueButton before 2.2.7 does not have a protection mechanism for separator injection in meetingId, userId, and authToken.
network
low complexity
bigbluebutton CWE-74
critical
9.8
2022-06-27 CVE-2022-31039 Incorrect Authorization vulnerability in Bigbluebutton Greenlight
Greenlight is a simple front-end interface for your BigBlueButton server.
network
low complexity
bigbluebutton CWE-863
5.0
2022-06-27 CVE-2022-31064 Cross-site Scripting vulnerability in Bigbluebutton
BigBlueButton is an open source web conferencing system.
network
high complexity
bigbluebutton CWE-79
2.1
2022-06-27 CVE-2022-31065 Cross-site Scripting vulnerability in Bigbluebutton
BigBlueButton is an open source web conferencing system.
4.3