CVE-2024-31819: Wwbn Avideo

Critical severity, CVSS 9.8. EPSS: 15.6% chance of exploitation in the next 30 days.

An issue in WWBN AVideo v.12.4 through v.14.2 allows a remote attacker to execute arbitrary code via the systemRootPath parameter of the submitIndex.php component.

Affected products

  • Wwbn Avideo: from 12.4, up to and including 14.2

Published 2024-04-10. Last modified 2026-06-17.