The Jitsi Meet (aka docker-jitsi-meet) stack on Docker before stable-4384-1 uses default passwords (such as passw0rd) for system accounts.
References
Link | Resource |
---|---|
https://github.com/jitsi/docker-jitsi-meet/blob/master/CHANGELOG.md#stable-4384-1 | Release Notes Third Party Advisory |
https://github.com/jitsi/docker-jitsi-meet/compare/stable-4384...stable-4384-1 | Third Party Advisory |
https://github.com/jitsi/docker-jitsi-meet/blob/master/CHANGELOG.md#stable-4384-1 | Release Notes Third Party Advisory |
https://github.com/jitsi/docker-jitsi-meet/compare/stable-4384...stable-4384-1 | Third Party Advisory |
Configurations
History
21 Nov 2024, 04:58
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/jitsi/docker-jitsi-meet/blob/master/CHANGELOG.md#stable-4384-1 - Release Notes, Third Party Advisory | |
References | () https://github.com/jitsi/docker-jitsi-meet/compare/stable-4384...stable-4384-1 - Third Party Advisory |
Information
Published : 2020-04-17 16:15
Updated : 2024-11-21 04:58
NVD link : CVE-2020-11878
Mitre link : CVE-2020-11878
CVE.ORG link : CVE-2020-11878
JSON object : View
Products Affected
jitsi
- meet
CWE
CWE-798
Use of Hard-coded Credentials