Rewterz

Rewterz Threat Advisory – IBM API Connect information disclosure

March 16, 2021
Rewterz

Informative Update – Microsoft Exchange One-Click On-Premises Mitigation Tool

March 16, 2021

Rewterz Threat Advisory – Apache OpenMeetings denial of service

Severity

High

Analysis Summary

CVE-2021-27576

Apache OpenMeetings is vulnerable to a denial of service, caused by a flaw in the NetTest web service. By sending a specially-crafted request, a remote attacker could exploit this vulnerability to overload the bandwidth of the server, and results in a denial of service condition.

Impact

Denial of service

Affected Vendors

Apache

Affected Products

  • Apache OpenMeetings 4.0.0
  • Apache OpenMeetings 5.0.0
  • Apache OpenMeetings 5.1.0

Remediation

Upgrade to the latest version of OpenMeetings (6.0.0 or later)

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.