VYPR

C21 Live Encoder

by Cires21

CVEs (2)

  • CVE-2024-0643Jan 17, 2024
    risk 0.00cvss epss 0.00

    Unrestricted upload of dangerous file types in the C21 Live Encoder and Live Mosaic product, version 5.3. This vulnerability allows a remote attacker to upload different file extensions without any restrictions, resulting in a full system compromise.

  • CVE-2024-0642Jan 17, 2024
    risk 0.00cvss epss 0.00

    Inadequate access control in the C21 Live Encoder and Live Mosaic product, version 5.3. This vulnerability allows a remote attacker to access the application as an administrator user through the application endpoint, due to lack of proper credential management.