Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-44081

Опубликовано: 29 окт. 2024
Источник: debian
EPSS Низкий

Описание

In Jitsi Meet before 2.0.9779, the functionality to share a video file was implemented in an insecure way, resulting in clients loading videos from an arbitrary URL if a message from another participant contains a URL encoded in the expected format.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jitsi-meetitppackage

EPSS

Процентиль: 53%
0.00749
Низкий

Связанные уязвимости

CVSS3: 9.8
nvd
почти 2 года назад

In Jitsi Meet before 2.0.9779, the functionality to share a video file was implemented in an insecure way, resulting in clients loading videos from an arbitrary URL if a message from another participant contains a URL encoded in the expected format.

CVSS3: 9.8
github
почти 2 года назад

In Jitsi Meet before 2.0.9779, the functionality to share a video file was implemented in an insecure way, resulting in clients loading videos from an arbitrary URL if a message from another participant contains a URL encoded in the expected format.

CVSS3: 9.8
fstec
около 2 лет назад

Уязвимость функции обмена видеофайлами программного обеспечения для проведения видеоконференций Jitsi Meet, позволяющая нарушителю загружать произвольные видеофайлы

EPSS

Процентиль: 53%
0.00749
Низкий