ZeroHour

CVE-2023-25313

PoC
CVSS 3.1
9.8 critical
EPSS
1%p69
Published
()
Modified
Description

OS injection vulnerability in World Wide Broadcast Network AVideo version before 12.4, allows attackers to execute arbitrary code via the video link field to the Embed a video link feature.

Vendors
wwbn
Products
avideo
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.