← Back to browse · API

CVE-2024-31819

Severity
CRITICAL
CVSS
9.8
EPSS
0.15635
Risk score
44.67
CISA KEV
No
PoC
No
Published
2024-04-10
Modified
2024-08-28
First seen
2026-08-07
Aliases
EUVD-2024-1254, GHSA-MV5W-WR5C-575P
Products
n/a:n/a n/a
Sources
euvd EUVD-2024-1254

Description

An issue in WWBN AVideo v.12.4 through v.14.2 allows a remote attacker to execute arbitrary code via the systemRootPath parameter of the submitIndex.php component.

References