Missing Authorization in KI Live Video Conferences by whassan
CVE-2025-23971
5.3MEDIUM
What is CVE-2025-23971?
The KI Live Video Conferences product from whassan is vulnerable to a Missing Authorization issue, which allows attackers to exploit incorrectly configured access control security levels. This vulnerability affects all versions from n/a up to 5.5.15. Improper access controls can lead to unauthorized users gaining access to sensitive areas of the application, potentially leading to the exposure of private video conferences or user data.
Affected Version(s)
KI Live Video Conferences <= 5.5.15