WWBN AVideo是WWBN团队的一个由PHP编写的视频平台建站系统。 WWBN AVideo 8.1版本存在安全漏洞,该漏洞源于信息泄露,可能导致攻击者通过playlistsFromUser.json.php端点枚举用户详细信息。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| AVideo | AVideo Platform | 8.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| AVideo | AVideo Platform | 8.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-37172 | 5.3 MEDIUM | AVideo Platform 8.1 - Cross Site Request Forgery (Password Reset) |
| CVE-2020-37158 | 5.3 MEDIUM | AVideo Platform 8.1 - Cross Site Request Forgery (Password Reset) |
No comments yet