Description
Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-38808 | Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue. |
References
History
Thu, 24 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bigbluebutton
Bigbluebutton greenlight |
|
| CPEs | cpe:2.3:a:bigbluebutton:greenlight:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Bigbluebutton
Bigbluebutton greenlight |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-03T09:51:59.902Z
Reserved: 2022-07-15T23:52:24.305Z
Link: CVE-2022-36028
Updated: 2024-08-03T09:51:59.902Z
Status : Analyzed
Published: 2024-04-25T21:15:46.327
Modified: 2025-04-24T13:45:40.137
Link: CVE-2022-36028
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD