Pexip Infinity
cpe:2.3:a:pexip:pexip_infinity:*:*:*:*:*:*:*
- >= 38.0, <= 38.1
A vulnerability in Pexip Infinity versions 38.0 and 38.1 prior to 39.0 allows for improper access control in the Real-Time Messaging Protocol (RTMP) implementation. This flaw enables an attacker to disconnect RTMP streams that are passing through a Proxy Node. RTMP is utilized to stream conference media to external recording systems.
Exploitation of this vulnerability disrupts RTMP streams, causing disconnections that can interrupt media recordings or broadcasts.
Users can upgrade to Pexip Infinity version 39.0 to address this vulnerability. If RTMP streaming is not needed, support for RTMP can be disabled in the Global Settings under Connectivity.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.