cve/2020/CVE-2020-23490.md
2024-05-25 21:48:12 +02:00

728 B

CVE-2020-23490

Description

There was a local file disclosure vulnerability in AVideo < 8.9 via the proxy streaming. An unauthenticated attacker can exploit this issue to read an arbitrary file on the server. Which could leak database credentials or other sensitive information such as /etc/passwd file.

POC

Reference

No PoCs from references.

Github