wwbn

197 tracked vulnerabilities.

CVE-2022-32770 MEDIUM NUCLEI
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Cross-Site Scripting via Footer Alerts Toast Parameter
Aug 22, 2022
CVSS 6.1
EPSS 0.14
CVE-2022-32769 MEDIUM
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Authenticated Authentication Bypass via Playlists Plugin ID Handling
Aug 22, 2022
CVSS 5.0
EPSS 0.00
CVE-2022-32768 MEDIUM
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Authentication Bypass via Live Schedules Plugin ID Guessing
Aug 22, 2022
CVSS 4.2
EPSS 0.00
CVE-2022-32761 MEDIUM
WWBN AVideo 11.6 and dev master - Arbitrary File Read via aVideoEncoderReceiveImage
Aug 22, 2022
CVSS 6.5
EPSS 0.03
CVE-2022-32572 HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - OS Command Injection via aVideoEncoder wget Functionality
Aug 22, 2022
CVSS 8.8
EPSS 0.23
CVE-2022-32282 HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Improper Authentication via Password Hash
Aug 22, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-30690 MEDIUM
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Cross-Site Scripting in Image403 Functionality
Aug 22, 2022
CVSS 6.1
EPSS 0.10
CVE-2022-30605 HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Session Fixation via Crafted HTTP Request
Aug 22, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-30547 CRITICAL
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Path Traversal and Arbitrary Command Execution via unzipDirectory
Aug 22, 2022
CVSS 9.9
EPSS 0.21
CVE-2022-30534 HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - OS Command Injection via aVideoEncoder Chunkfile Functionality
Aug 22, 2022
CVSS 8.8
EPSS 0.12
CVE-2022-29468 HIGH
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Cross-Site Request Forgery
Aug 22, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-28712 CRITICAL
WWBN AVideo 11.6 and dev master commit 3f7c0364 - Cross-Site Scripting in videoAddNew Functionality
Aug 22, 2022
CVSS 9.0
EPSS 0.04
CVE-2022-28710 MEDIUM
WWBN AVideo <11.6 - Info Disclosure
Aug 22, 2022
CVSS 6.5
EPSS 0.03
CVE-2022-26842 CRITICAL
WWBN AVideo 11.6 and dev master - Reflected Cross-Site Scripting in Charts Tab Selection
Aug 22, 2022
CVSS 9.6
EPSS 0.09
CVE-2022-27463 MEDIUM
WWBN AVideo < 11.6 - Open Redirect via Login Endpoint
Apr 05, 2022
CVSS 6.1
EPSS 0.00
CVE-2022-27462 MEDIUM
WWBN AVideo < 11.6 - Cross-Site Scripting via yptDevice Parameter
Apr 05, 2022
CVSS 6.1
EPSS 0.00
CVE-2021-21286 HIGH
AVideo Platform <10.2 - Auth Bypass
Feb 01, 2021
CVSS 7.7
EPSS 0.00
CVE-2020-37173 HIGH
AVideo Platform 8.1 - Info Disclosure
Feb 11, 2026
CVSS 7.5
EPSS 0.00
CVE-2020-37172 MEDIUM
AVideo Platform 8.1 - Cross-Site Request Forgery in Password Recovery Mechanism
Feb 11, 2026
CVSS 5.3
EPSS 0.00
CVE-2020-37158 MEDIUM
AVideo Platform 8.1 - Cross-Site Request Forgery via Password Recovery Mechanism
Feb 11, 2026
CVSS 5.3
EPSS 0.00
CVE-2020-23490 HIGH
AVideo < 8.9 - Unauthenticated Local File Disclosure via Proxy Streaming
Nov 16, 2020
CVSS 7.5
EPSS 0.17
CVE-2020-23489 HIGH
AVideo < 8.9 - File Deletion and Privilege Escalation via import.json.php
Nov 16, 2020
CVSS 8.8
EPSS 0.05