First published: Tue Apr 05 2022(Updated: )
Open redirect vulnerability in objects/login.json.php in WWBN AVideo through 11.6, allows attackers to arbitrarily redirect users from a crafted url to the login page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WWBN AVideo | <=11.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27463 is considered a medium-severity vulnerability due to its potential for misuse in open redirect attacks.
To fix CVE-2022-27463, update your WWBN AVideo software to version 11.7 or later, which addresses the vulnerability.
Attackers can exploit CVE-2022-27463 to create crafted URLs that redirect users to malicious websites.
CVE-2022-27463 affects all users of WWBN AVideo versions up to and including 11.6.
The vulnerability in CVE-2022-27463 exists in the objects/login.json.php file of WWBN AVideo.