通过提交 c3edcc274c 的 AVideo 版本存在一个授权绕过漏洞:一个名为 'key'、值为 'value' 的会话 Cookie 会覆盖 及相关接口中的 参数。攻击者可以利用已知的固定流密钥值,在无认证的情况下向任意用户的 RTMP 流进行推流,从而劫持直播广播。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86723 | 8.1 HIGH | AVideo LoginControl PGP Authentication Bypass via verifyChallenge |
| CVE-2026-86720 | 8.1 HIGH | WWBN AVideo Missing Authorization via resendRestreamer.json.php |
| CVE-2026-86722 | 8.1 HIGH | AVideo Authentication Bypass via SQL Cache Invalidation |
| CVE-2026-86728 | 7.5 HIGH | AVideo through 29.0 Unauthenticated Disclosure via epg.json.php |
| CVE-2026-86727 | 7.5 HIGH | AVideo through 29.0 Information Disclosure via stats.json.php |
| CVE-2026-86729 | 7.4 HIGH | WWBN AVideo Unrestricted Authentication Attempts via get_api_preauthorize |
| CVE-2026-86718 | 7.1 HIGH | WWBN AVideo Cross-Site Request Forgery via deleteHistory.json.php |
| CVE-2026-86725 | 7.1 HIGH | AVideo SocialMediaPublisher Missing Authorization via add.json.php |
| CVE-2026-86726 | 6.5 MEDIUM | AVideo through 29.0 Information Disclosure via restreamsActive.json.php |
| CVE-2026-86724 | 6.5 MEDIUM | AVideo YPTWallet saveBalance.php Cross-Site Request Forgery |
| CVE-2026-86719 | 5.4 MEDIUM | WWBN AVideo CustomizeUser Cross-Site Request Forgery Session Hijacking |
No comments yet