CVE-2017-7664
Published Jul 17, 2017
Last updated 7 years ago
Overview
- Description
- Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
- Source
- security@apache.org
- NVD status
- Analyzed
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 10
- Impact score
- 6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:H
- Severity
- CRITICAL
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-611
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:apache:openmeetings:3.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1FCC94CB-EBC7-46D2-BD9E-DB043A4CD5B1" }, { "criteria": "cpe:2.3:a:apache:openmeetings:3.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DC811824-EA8F-49F6-B732-10731A1BC0EF" }, { "criteria": "cpe:2.3:a:apache:openmeetings:3.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8AFF29DC-46BA-4505-A921-42C783BC4C8F" }, { "criteria": "cpe:2.3:a:apache:openmeetings:3.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "085A80B3-B880-428D-AF1D-BED61C31E304" }, { "criteria": "cpe:2.3:a:apache:openmeetings:3.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "46036494-F97D-4C02-A630-102D9E7DE2CE" }, { "criteria": "cpe:2.3:a:apache:openmeetings:3.1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A2C208B6-E86A-4F73-B078-BA47BA1B162D" }, { "criteria": "cpe:2.3:a:apache:openmeetings:3.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "331EDEB7-D823-43C6-9D8B-E872F921A328" }, { "criteria": "cpe:2.3:a:apache:openmeetings:3.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B8D44A5F-C7BD-4CC2-9065-179FA92301C9" } ], "operator": "OR" } ] } ]