logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-38289

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-38289

Description:
A boolean-based SQL injection issue in the Virtual Meeting Password (VMP) endpoint in R-HUB TurboMeeting through 8.x allows unauthenticated remote attackers to extract hashed passwords from the database, and authenticate to the application, via crafted SQL input.
Last updated date:
09/09/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
08/13/2024
Reference url to background

https://github.com/google/security-research/security/advisories/GHSA-vx5j-8pgx-v42v

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy