Stored Cross-Site Scripting in the Manager component of...
High severity
Unreviewed
Published
Nov 22, 2024
to the GitHub Advisory Database
•
Updated Nov 22, 2024
Description
Published by the National Vulnerability Database
Nov 21, 2024
Published to the GitHub Advisory Database
Nov 22, 2024
Last updated
Nov 22, 2024
Stored Cross-Site Scripting in the Manager component of Wowza Streaming Engine below 4.9.1 allows an unauthenticated attacker to inject client-side JavaScript into the web dashboard to automatically hijack admin accounts.
References