← Back to browse · API

CVE-2022-30534

Severity
CRITICAL
CVSS
9.9
EPSS
0.74491
Risk score
65.67
CISA KEV
No
PoC
No
Published
2022-08-22
Modified
2025-04-15
First seen
2026-08-07
Aliases
EUVD-2022-52394, GHSA-F6MM-7V2X-HF2V
Products
WWBN:AVideo 11.6, WWBN:AVideo dev master commit 3f7c0364
Sources
euvd EUVD-2022-52394

Description

An OS command injection vulnerability exists in the aVideoEncoder chunkfile functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.

References