WWBN AVideo
cpe:2.3:a:wwbn:avideo:*:*:*:*:*:*:*
- < 20.0
A open redirect vulnerability has been identified in AVideo versions prior to 20.0. This issue arises from inadequate validation of the cancelUri parameter during user login, allowing attackers to redirect users to arbitrary external sites and potentially facilitate phishing attacks.
Exploitation of this vulnerability could lead to open redirect, allowing for phishing attacks by redirecting users to malicious sites.
Users can upgrade to AVideo version 20.0 or later, which includes a patch for this vulnerability. The update can be applied by following the instructions in the AVideo release notes.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.