Description
Apache OpenMeetings 1.0.0 uses not very strong cryptographic storage, captcha is not used in registration and forget password dialogs and auth forms missing brute force protection.
Remediation
References
http://markmail.org/message/3hshl26omwjo6c5i
http://www.securityfocus.com/bid/99587
Related Vulnerabilities
CVE-2020-2283 Vulnerability in maven package org.jenkins-ci.plugins:liquibase-runner
CVE-2023-40815 Vulnerability in maven package org.opencrx:opencrx-core-models
CVE-2022-36916 Vulnerability in maven package org.jenkins-ci.plugins:google-cloud-backup
CVE-2021-31403 Vulnerability in maven package com.vaadin:vaadin-server
CVE-2023-49485 Vulnerability in maven package com.jfinal:jfinal