CVE-2026-92582 | WWBN AVideo up to 29.0 CSRF Check Bypass videoAddNew.json.php loginFromRequestIfNotLogged user/pass cross-site request forgery (e01e41ecc)

SecurityVulns

A vulnerability classified as problematic has been found in WWBN AVideo up to 29.0. Affected is the function User::loginFromRequestIfNotLogged of the file objects/videoAddNew.json.php of the component CSRF Check Bypass. Performing a manipulation of the argument user/pass results in cross-site request forgery.

This vulnerability is identified as CVE-2026-92582. The attack can be initiated remotely. There is not any exploit available.

To fix this issue, it is recommended to deploy a patch.VulDB Recent EntriesRead More