CVE-2020-27602 Information
Sep 30, 2022
cve
Description
BigBlueButton before 2.2.7 does not have a protection mechanism for separator injection in meetingId userId and authToken.
Reference
https://github.com/bigbluebutton/bigbluebutton/commit/4bfd924c64da2681f4c037026021f47eb189d717 https://github.com/bigbluebutton/bigbluebutton/compare/v2.2.6…v2.2.7
Share on: