Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-38808 | Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 24 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bigbluebutton
Bigbluebutton greenlight |
|
| CPEs | cpe:2.3:a:bigbluebutton:greenlight:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Bigbluebutton
Bigbluebutton greenlight |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-03T09:51:59.902Z
Reserved: 2022-07-15T23:52:24.305Z
Link: CVE-2022-36028
Updated: 2024-08-03T09:51:59.902Z
Status : Analyzed
Published: 2024-04-25T21:15:46.327
Modified: 2025-04-24T13:45:40.137
Link: CVE-2022-36028
No data.
OpenCVE Enrichment
No data.
EUVD