Apache.OpenMeetings.NetTest.Web.Service.DoS

2021-04-28 This signature was removed in version 18.069.

description-logoDescription

This indicates an attack attempt to exploit a Denial of Service Vulnerability in Apache Software Foundation OpenMeetings.
The vulnerability is due to a lack of rate limiting on NetTest. A remote attacker could exploit this vulnerability by sending a large number of requests. Successful exploitation could result in network exhaustion and denial of service.

affected-products-logoAffected Products

Apache Software Foundation OpenMeetings 4.0.0 - 5.0.0

Impact logoImpact

Denial of Service: Remote attackers can crash vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
http://openmeetings.apache.org/security.html

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2021-04-28 18.069
Removed
2020-11-24 16.967
Modified
Default_action:pass:drop
2020-11-12 16.961
New