Medium severity6.1NVD Advisory· Published Apr 5, 2022· Updated Jun 17, 2026
CVE-2022-27462
CVE-2022-27462
Description
Cross Site Scripting (XSS) vulnerability in objects/function.php in function getDeviceID in WWBN AVideo through 11.6, via the yptDevice parameter to view/include/head.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
2- github.com/WWBN/AVideo/commit/3722335f808484e6bfb5e71028fedddd942add4anvdPatchThird Party Advisory
- avideo.tubenvdProduct
News mentions
0No linked articles in our index yet.