wwbn
197 tracked vulnerabilities.
CVE-2022-32770
MEDIUM
NUCLEI
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Cross-Site Scripting via Footer Alerts Toast Parameter
Aug 22, 2022
CVSS 6.1
EPSS 0.14
CVE-2022-32769
MEDIUM
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Authenticated Authentication Bypass via Playlists Plugin ID Handling
Aug 22, 2022
CVSS 5.0
EPSS 0.00
CVE-2022-32768
MEDIUM
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Authentication Bypass via Live Schedules Plugin ID Guessing
Aug 22, 2022
CVSS 4.2
EPSS 0.00
CVE-2022-32761
MEDIUM
WWBN AVideo 11.6 and dev master - Arbitrary File Read via aVideoEncoderReceiveImage
Aug 22, 2022
CVSS 6.5
EPSS 0.03
CVE-2022-32572
HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - OS Command Injection via aVideoEncoder wget Functionality
Aug 22, 2022
CVSS 8.8
EPSS 0.23
CVE-2022-32282
HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Improper Authentication via Password Hash
Aug 22, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-30690
MEDIUM
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Cross-Site Scripting in Image403 Functionality
Aug 22, 2022
CVSS 6.1
EPSS 0.10
CVE-2022-30605
HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Session Fixation via Crafted HTTP Request
Aug 22, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-30547
CRITICAL
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Path Traversal and Arbitrary Command Execution via unzipDirectory
Aug 22, 2022
CVSS 9.9
EPSS 0.21
CVE-2022-30534
HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - OS Command Injection via aVideoEncoder Chunkfile Functionality
Aug 22, 2022
CVSS 8.8
EPSS 0.12
CVE-2022-29468
HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Cross-Site Request Forgery
Aug 22, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-28712
CRITICAL
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Cross-Site Scripting in videoAddNew Functionality
Aug 22, 2022
CVSS 9.0
EPSS 0.04
CVE-2022-28710
MEDIUM
WWBN AVideo <11.6 - Info Disclosure
Aug 22, 2022
CVSS 6.5
EPSS 0.03
CVE-2022-26842
CRITICAL
WWBN AVideo 11.6 and dev master - Reflected Cross-Site Scripting in Charts Tab Selection
Aug 22, 2022
CVSS 9.6
EPSS 0.09
CVE-2022-27463
MEDIUM
WWBN AVideo < 11.6 - Open Redirect via Login Endpoint
Apr 05, 2022
CVSS 6.1
EPSS 0.00
CVE-2022-27462
MEDIUM
WWBN AVideo < 11.6 - Cross-Site Scripting via yptDevice Parameter
Apr 05, 2022
CVSS 6.1
EPSS 0.00
CVE-2021-21286
HIGH
AVideo Platform <10.2 - Auth Bypass
Feb 01, 2021
CVSS 7.7
EPSS 0.00
CVE-2020-37173
HIGH
AVideo Platform 8.1 - Info Disclosure
Feb 11, 2026
CVSS 7.5
EPSS 0.00
CVE-2020-37172
MEDIUM
AVideo Platform 8.1 - Cross-Site Request Forgery in Password Recovery Mechanism
Feb 11, 2026
CVSS 5.3
EPSS 0.00
CVE-2020-37158
MEDIUM
AVideo Platform 8.1 - Cross-Site Request Forgery via Password Recovery Mechanism
Feb 11, 2026
CVSS 5.3
EPSS 0.00
CVE-2020-23490
HIGH
AVideo < 8.9 - Unauthenticated Local File Disclosure via Proxy Streaming
Nov 16, 2020
CVSS 7.5
EPSS 0.17
CVE-2020-23489
HIGH
AVideo < 8.9 - File Deletion and Privilege Escalation via import.json.php
Nov 16, 2020
CVSS 8.8
EPSS 0.05
Quick Filters