CVE-2018-7047: Wowza Streaming Engine

Critical severity, CVSS 9.8. EPSS: 2.3% chance of exploitation in the next 30 days.

An issue was discovered in the MBeans Server in Wowza Streaming Engine before 4.7.1. The file system may be read and written to via JMX using the default JMX credentials (remote code execution may be possible as well).

Affected products

  • Wowza Streaming Engine: before 4.7.1 (fixed in 4.7.1)

Published 2018-03-01. Last modified 2026-06-17.