İçeriğe atla
Noroxi

jitsi kayıtları

jitsi üreticisine ait 7 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%14,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

7 kayıt
  • CVE-2021-26812
    53Planlayın

    Cross Site Scripting (XSS) in the Jitsi Meet 2.7 through 2.8.3 plugin for Moodle via the "sessionpriv.php" module.

    OrtaCVSS 6,1Kavram kanıtıEPSS %97

    jitsi · meet14 Nis 2021

  • CVE-2022-43550
    40Planlayın

    A command injection vulnerability exists in Jitsi before commit 8aa7be58522f4264078d54752aae5483bfd854b2 when launching browsers on Windows

    KritikCVSS 9,8İstismar yokEPSS %2

    jitsi · jitsi9 Şub 2023

  • CVE-2020-11878
    39İzleyin

    The Jitsi Meet (aka docker-jitsi-meet) stack on Docker before stable-4384-1 uses default passwords (such as passw0rd) for system accounts.

    KritikCVSS 9,8İstismar yokEPSS %1

    jitsi · meet17 Nis 2020

  • CVE-2020-25019
    30İzleyin

    jitsi-meet-electron (aka Jitsi Meet Electron) before 2.3.0 calls the Electron shell.openExternal function without verifying that the URL is

    YüksekCVSS 7,5İstismar yokEPSS %1

    jitsi · meet electron29 Ağu 2020

  • CVE-2024-33530
    30İzleyin

    In Jitsi Meet before 9391, a logic flaw in password-protected Jitsi meetings (that make use of a lobby) leads to the disclosure of the meeti

    YüksekCVSS 7,5İstismar yokEPSS %1

    2 May 2024

  • CVE-2022-36736
    24İzleyin

    Jitsi-2.10.5550 was discovered to contain a vulnerability in its web UI which allows attackers to perform a clickjacking attack via a crafte

    OrtaCVSS 6,1İstismar yokEPSS %1

    jitsi · jitsi8 Eyl 2022

  • CVE-2017-5603
    23İzleyin

    An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, includ

    OrtaCVSS 5,9İstismar yokEPSS %2

    jitsi · jitsi9 Şub 2017