Vulnerability Details CVE-2020-29043
An issue was discovered in BigBlueButton through 2.2.29. When at attacker is able to view an account_activations/edit?token= URI, the attacker can create an approved user account associated with an email address that has an arbitrary domain name.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.0%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2020-29043
-
cpe:2.3:a:bigbluebutton:bigbluebutton:-
-
cpe:2.3:a:bigbluebutton:bigbluebutton:0.7
-
cpe:2.3:a:bigbluebutton:bigbluebutton:0.71
-
cpe:2.3:a:bigbluebutton:bigbluebutton:0.8
-
cpe:2.3:a:bigbluebutton:bigbluebutton:0.81
-
cpe:2.3:a:bigbluebutton:bigbluebutton:0.9.0
-
cpe:2.3:a:bigbluebutton:bigbluebutton:0.9.1
-
cpe:2.3:a:bigbluebutton:bigbluebutton:0.9.2
-
cpe:2.3:a:bigbluebutton:bigbluebutton:1.0.0
-
cpe:2.3:a:bigbluebutton:bigbluebutton:1.1.0
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.0
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.0
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.1
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.10
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.11
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.12
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.14
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.15
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.16
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.17
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.18
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.19
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.2
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.20
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.21
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.22
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.23
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.24
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.25
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.26
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.27
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.28
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.29
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.3
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.4
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.5
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.6
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.7
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.8
-
cpe:2.3:a:bigbluebutton:bigbluebutton:2.2.9