CVE-2022-27463: Medium severity wwbn avideo vulnerability
Published Apr 5, 2022
·Updated
Open redirect vulnerability in objects/login.json.php in WWBN AVideo through 11.6, allows attackers to arbitrarily redirect users from a crafted url to the login page.
Affected Software
1 affected component
WWBN AVideo<=11.6
Remediation
Event History
Apr 5, 2022
CVE Published
via MITRE·03:37 PM
Data Sourced
via MITRE·03:37 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-27463?
CVE-2022-27463 is considered a medium-severity vulnerability due to its potential for misuse in open redirect attacks.
2
How do I fix CVE-2022-27463?
To fix CVE-2022-27463, update your WWBN AVideo software to version 11.7 or later, which addresses the vulnerability.
3
What types of attacks can be performed using CVE-2022-27463?
Attackers can exploit CVE-2022-27463 to create crafted URLs that redirect users to malicious websites.
4
Who is affected by CVE-2022-27463?
CVE-2022-27463 affects all users of WWBN AVideo versions up to and including 11.6.
5
What component of WWBN AVideo is vulnerable in CVE-2022-27463?
The vulnerability in CVE-2022-27463 exists in the objects/login.json.php file of WWBN AVideo.