← back
CVE-2023-25313

CVE-2023-25313

CVSS 9.8 CRITICALEPSS 1.3%CWE-78
Vexday Risk Score
28Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 9.8EPSS 1.3%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
25 Apr 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
OS injection vulnerability in World Wide Broadcast Network AVideo version before 12.4, allows attackers to execute arbitrary code via the video link field to the Embed a video link feature.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
n/a · n/a