Adobe Connect version 11.2.1 (and earlier) is affected by an Improper access control vulnerability that can lead to the elevation of privileges. An attacker with 'Learner' permissions can leverage this scenario to access the list of event participants.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/connect/apsb21-36.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: adobe
Published: 2021-06-08T00:00:00
Updated: 2021-06-28T14:13:08
Reserved: 2021-03-16T00:00:00
Link: CVE-2021-28579
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-06-28T15:15:23.163
Modified: 2022-10-25T23:47:23.020
Link: CVE-2021-28579
JSON object: View
Redhat Information
No data.
CWE