CVE-2016-0783
Estado: ModificadaAlta (7.5)—
The sendHashByUser function in Apache OpenMeetings before 3.1.1 generates predictable password reset tokens, which makes it easier for remote attackers to reset arbitrary user passwords by leveraging knowledge of a user name and the current system time.
CVSS
- Versión: 3.0
- Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Puntuación base: 7.5
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 7.10%
- Percentil entre todas las CVEs puntuadas: 94
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-200
Referencias
- http://haxx.ml/post/141655340521/all-your-meetings-are-belong-to-us-remote-code
- http://openmeetings.apache.org/security.html
- http://packetstormsecurity.com/files/136432/Apache-OpenMeetings-3.1.0-MD5-Hashing.html
- http://www.securityfocus.com/archive/1/537886/100/0/threaded
- https://www.apache.org/dist/openmeetings/3.1.1/CHANGELOG
- http://haxx.ml/post/141655340521/all-your-meetings-are-belong-to-us-remote-code
- http://openmeetings.apache.org/security.html
- http://packetstormsecurity.com/files/136432/Apache-OpenMeetings-3.1.0-MD5-Hashing.html
- http://www.securityfocus.com/archive/1/537886/100/0/threaded
- https://www.apache.org/dist/openmeetings/3.1.1/CHANGELOG
JSON original (NVD)
Mostrar
{
"id": "CVE-2016-0783",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 5,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "LOW",
"availabilityImpact": "NONE",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false
}
],
"cvssMetricV30": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.0",
"baseScore": 7.5,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 3.6,
"exploitabilityScore": 3.9
}
]
},
"affected": [
{
"source": "secalert@redhat.com",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2016-04-11T14:59:06.347",
"references": [
{
"url": "http://haxx.ml/post/141655340521/all-your-meetings-are-belong-to-us-remote-code",
"source": "secalert@redhat.com"
},
{
"url": "http://openmeetings.apache.org/security.html",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "http://packetstormsecurity.com/files/136432/Apache-OpenMeetings-3.1.0-MD5-Hashing.html",
"source": "secalert@redhat.com"
},
{
"url": "http://www.securityfocus.com/archive/1/537886/100/0/threaded",
"source": "secalert@redhat.com"
},
{
"url": "https://www.apache.org/dist/openmeetings/3.1.1/CHANGELOG",
"source": "secalert@redhat.com"
},
{
"url": "http://haxx.ml/post/141655340521/all-your-meetings-are-belong-to-us-remote-code",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://openmeetings.apache.org/security.html",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://packetstormsecurity.com/files/136432/Apache-OpenMeetings-3.1.0-MD5-Hashing.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/537886/100/0/threaded",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://www.apache.org/dist/openmeetings/3.1.1/CHANGELOG",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-200"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The sendHashByUser function in Apache OpenMeetings before 3.1.1 generates predictable password reset tokens, which makes it easier for remote attackers to reset arbitrary user passwords by leveraging knowledge of a user name and the current system time."
},
{
"lang": "es",
"value": "La función sendHashByUser en Apache OpenMeetings en versiones anteriores a 3.1.1 genera tokens de reinicio de contraseña predecibles, lo que hace más fácil para atacantes remotos restablecer contraseñas de usuario arbitrarias aprovechando el conocimiento de un nombre de usuario y la hora de sistema actual."
}
],
"lastModified": "2026-06-17T00:38:13.447",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:apache:openmeetings:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "01C6A9F0-E6EE-4084-8DCD-F445AD181210",
"versionEndIncluding": "3.1.0"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "secalert@redhat.com"
}