Jitsi CVE-2017-5603 Input Validation Bypass Vulnerability

description-logoDescription

An incorrect implementation of XEP-0280: Message Carbons in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Jitsi 2.5.5061 - 2.9.5544.

affected-products-logoAffected Applications

Jitsi

CVE References

CVE-2017-5603