CVE-2017-7673: Apache Openmeetings
Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.
Apache OpenMeetings 1.0.0 uses not very strong cryptographic storage, captcha is not used in registration and forget password dialogs and auth forms missing brute force protection.
Affected products
- Apache Openmeetings: version 1.0.0 only; version 2.0 only; version 2.1 only; version 2.1.1 only; version 2.2.0 only; version 3.0.0 only; …
Published 2017-07-17. Last modified 2026-06-17.