Vulnerabilities > Wwbn > Avideo > 15fed957fb

DATE CVE VULNERABILITY TITLE RISK
2024-01-10 CVE-2023-47171 Unspecified vulnerability in Wwbn Avideo 11.6/15Fed957Fb
An information disclosure vulnerability exists in the aVideoEncoder.json.php chunkFile path functionality of WWBN AVideo 11.6 and dev master commit 15fed957fb.
network
low complexity
wwbn
6.5
2024-01-10 CVE-2023-47861 Cross-site Scripting vulnerability in Wwbn Avideo 11.6/15Fed957Fb
A cross-site scripting (xss) vulnerability exists in the channelBody.php user name functionality of WWBN AVideo 11.6 and dev master commit 15fed957fb.
network
low complexity
wwbn CWE-79
5.4
2024-01-10 CVE-2023-47862 Unspecified vulnerability in Wwbn Avideo 15Fed957Fb
A local file inclusion vulnerability exists in the getLanguageFromBrowser functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn
critical
9.8
2024-01-10 CVE-2023-48730 Cross-site Scripting vulnerability in Wwbn Avideo 15Fed957Fb
A cross-site scripting (xss) vulnerability exists in the navbarMenuAndLogo.php user name functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn CWE-79
5.4
2024-01-10 CVE-2023-49589 Unspecified vulnerability in Wwbn Avideo 15Fed957Fb
An insufficient entropy vulnerability exists in the userRecoverPass.php recoverPass generation functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn
8.8
2024-01-10 CVE-2023-49599 Insufficient Entropy vulnerability in Wwbn Avideo 15Fed957Fb
An insufficient entropy vulnerability exists in the salt generation functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn CWE-331
critical
9.8
2024-01-10 CVE-2023-49715 Unrestricted Upload of File with Dangerous Type vulnerability in Wwbn Avideo 15Fed957Fb
A unrestricted php file upload vulnerability exists in the import.json.php temporary copy functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn CWE-434
8.8
2024-01-10 CVE-2023-49738 Unspecified vulnerability in Wwbn Avideo 15Fed957Fb
An information disclosure vulnerability exists in the image404Raw.php functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn
7.5
2024-01-10 CVE-2023-49810 Improper Restriction of Excessive Authentication Attempts vulnerability in Wwbn Avideo 15Fed957Fb
A login attempt restriction bypass vulnerability exists in the checkLoginAttempts functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn CWE-307
6.5
2024-01-10 CVE-2023-50172 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Wwbn Avideo 15Fed957Fb
A recovery notification bypass vulnerability exists in the userRecoverPass.php captcha validation functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn CWE-640
5.3