CVE-2025-48732

7.3HIGH

An incomplete blacklist exists in the .htaccess sample of WWBN AVideo 14.4 and dev master commit 8a8954ff. A specially crafted HTTP request can lead to a arbitrary code execution. An attacker can requ

Veröffentlicht: 7/24/2025Aktualisiert: 11/3/2025

Beschreibung

An incomplete blacklist exists in the .htaccess sample of WWBN AVideo 14.4 and dev master commit 8a8954ff. A specially crafted HTTP request can lead to a arbitrary code execution. An attacker can request a .phar file to trigger this vulnerability.

KI-AnalyseKI-gestützt

Betroffene Produkte

wwbnavideo
14.4

Referenzen