CVE-2022-32761: Medium severity wwbn avideo vulnerability
An information disclosure vulnerability exists in the aVideoEncoderReceiveImage functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary file read. An attacker can send an HTTP request to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-32761?
CVE-2022-32761 is classified as an information disclosure vulnerability.
How do I fix CVE-2022-32761?
To fix CVE-2022-32761, update your WWBN AVideo installation to version 11.6 or a later version that addresses this vulnerability.
What software is affected by CVE-2022-32761?
CVE-2022-32761 affects WWBN AVideo version 11.6 and the development master commit 3f7c0364.
What type of attack can exploit CVE-2022-32761?
CVE-2022-32761 can be exploited through a specially-crafted HTTP request that leads to arbitrary file read.
Can CVE-2022-32761 allow unauthorized access to sensitive information?
Yes, CVE-2022-32761 can potentially allow attackers to read sensitive files from the server.