CVE-2017-7684

Apache OpenMeetings 1.0.0 doesn't check contents of files being uploaded. An attacker can cause a denial of service by uploading multiple large files to the server.
References
Link Resource
http://markmail.org/message/v6dpmrdd6cgg66up Mailing List Third Party Advisory
http://www.securityfocus.com/bid/99584 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apache:openmeetings:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:2.0:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:2.1:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:2.2.0:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.0.2:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.0.3:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.0.4:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.0.5:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.0.6:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.0.7:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.1.0:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.1.2:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.1.3:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.1.4:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.1.5:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.2.0:*:*:*:*:*:*:*
cpe:2.3:a:apache:openmeetings:3.2.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-07-17 13:18

Updated : 2024-02-04 19:29


NVD link : CVE-2017-7684

Mitre link : CVE-2017-7684

CVE.ORG link : CVE-2017-7684


JSON object : View

Products Affected

apache

  • openmeetings
CWE
CWE-400

Uncontrolled Resource Consumption