Improper Password Management in BigBlueButton by Blindside Networks
CVE-2020-27613
8.4HIGH
What is CVE-2020-27613?
The installation process of BigBlueButton prior to version 2.2.28 utilizes a hardcoded password for FreeSWITCH, which enables local users to gain unauthorized access to the system. This weakness poses significant security risks, as it could allow malicious insiders to manipulate communications and server configurations.
