{ "id": "CVE-2024-38273", "sourceIdentifier": "patrick@puiterwijk.org", "published": "2024-06-18T20:15:13.740", "lastModified": "2024-06-27T03:15:50.130", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Insufficient capability checks meant it was possible for users to gain access to BigBlueButton join URLs they did not have permission to access." }, { "lang": "es", "value": "Las comprobaciones de capacidad insuficientes significaron que era posible que los usuarios obtuvieran acceso a las URL de uni\u00f3n de BigBlueButton a las que no ten\u00edan permiso para acceder." } ], "metrics": {}, "weaknesses": [ { "source": "patrick@puiterwijk.org", "type": "Secondary", "description": [ { "lang": "en", "value": "CWE-284" } ] } ], "references": [ { "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/F7AZYR7EXV6E5SQE2GYTNQE3NOENJCQ6/", "source": "patrick@puiterwijk.org" }, { "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GHTIX55J4Q4LEOMLNEA4OZSWVEENQX7E/", "source": "patrick@puiterwijk.org" }, { "url": "https://moodle.org/mod/forum/discuss.php?d=459498", "source": "patrick@puiterwijk.org" } ] }