High severity7.5NVD Advisory· Published Apr 23, 2020· Updated Jun 17, 2026
CVE-2020-12112
CVE-2020-12112
Description
BigBlueButton before 2.2.5 allows remote attackers to obtain sensitive files via Local File Inclusion.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:bigbluebutton:bigbluebutton:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:bigbluebutton:bigbluebutton:*:*:*:*:*:*:*:*range: <2.2.5
- (no CPE)range: <2.2.5
- BigBlueButton/BigBlueButtondescription
Patches
Vulnerability mechanics
References
4- github.com/bigbluebutton/bigbluebutton/compare/v2.2.4...v2.2.5nvdPatchThird Party Advisory
- cwe.mitre.org/data/definitions/23.htmlnvdThird Party Advisory
- twitter.com/bigbluebutton/status/1252706369486180353nvdThird Party Advisory
- twitter.com/thibeault_chenu/status/1249976515917422593nvdThird Party Advisory
News mentions
0No linked articles in our index yet.