CVE-2019-13410
TOPMeeting version before version 8.8 (2019/08/19) allows an attacker to obtain sensitive information
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
17 Oct 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
TOPMeeting before version 8.8 (2019/08/19) shows attendees account and password in front end page that allows an attacker to obtain sensitive information by browsing the source code of the page.
Affected products
TOPOO Technology · TOPMeetingWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →