Security Advisory

CVE-2024-38287

9.8
CRITICAL

Vulnerability Description

The password-reset mechanism in the Forgot Password functionality in R-HUB TurboMeeting through 8.x allows unauthenticated remote attackers to force the application into resetting the administrator's password to a random insecure 8-digit value.
Published Date July 25, 2024
Official Source NIST NVD Advisory