CVE-2019-13410 describes a sensitive information disclosure vulnerability in TOPMeeting versions prior to 8.8 (released 2019/08/19). Attackers can obtain attendee account credentials by inspecting the front-end page's source code. This vulnerability carries a CVSS score of 7.5 (High), indicating a network-exploitable flaw with low attack complexity and high confidentiality impact, requiring no user interaction. While no public exploit code or active exploitation has been observed, and community discussion is minimal, organizations using affected TOPMeeting versions should prioritize patching.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 8.8CPE matchmatch criteria | cpe:2.3:a:topmeeting:topmeeting:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.