Vulnerabilities
Vulnerable Software
Wwbn:  >> Avideo  >> 10.2  Security Vulnerabilities
Cross Site Scripting (XSS) vulnerability in World Wide Broadcast Network AVideo before 12.4, allows attackers to gain sensitive information via the success parameter to /user.
CVSS Score
6.1
EPSS Score
0.001
Published
2023-04-25
Cross Site Scripting (XSS) vulnerability in objects/function.php in function getDeviceID in WWBN AVideo through 11.6, via the yptDevice parameter to view/include/head.php.
CVSS Score
6.1
EPSS Score
0.002
Published
2022-04-05
Open redirect vulnerability in objects/login.json.php in WWBN AVideo through 11.6, allows attackers to arbitrarily redirect users from a crafted url to the login page.
CVSS Score
6.1
EPSS Score
0.002
Published
2022-04-05


Contact Us

Shodan ® - All rights reserved