Vulnerabilities > Wwbn > Avideo > High

DATE CVE VULNERABILITY TITLE RISK
2024-01-10 CVE-2023-49589 Unspecified vulnerability in Wwbn Avideo 15Fed957Fb
An insufficient entropy vulnerability exists in the userRecoverPass.php recoverPass generation functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn
8.8
2024-01-10 CVE-2023-49715 Unrestricted Upload of File with Dangerous Type vulnerability in Wwbn Avideo 15Fed957Fb
A unrestricted php file upload vulnerability exists in the import.json.php temporary copy functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn CWE-434
8.8
2024-01-10 CVE-2023-49738 Unspecified vulnerability in Wwbn Avideo 15Fed957Fb
An information disclosure vulnerability exists in the image404Raw.php functionality of WWBN AVideo dev master commit 15fed957fb.
network
low complexity
wwbn
7.5
2023-05-12 CVE-2023-32073 Command Injection vulnerability in Wwbn Avideo
WWBN AVideo is an open source video platform.
network
low complexity
wwbn CWE-77
8.8
2023-04-28 CVE-2023-30854 OS Command Injection vulnerability in Wwbn Avideo
AVideo is an open source video platform.
network
low complexity
wwbn CWE-78
8.8