Beveiligingsadvies

CVE-2020-37173

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-02-11 20:36:58
Laatst bijgewerkt 2026-02-12 19:09:54
Toegewezen door VulnCheck
CVSS-score 8.7
Status PUBLISHED

Beschrijving

AVideo Platform 8.1 contains an information disclosure vulnerability that allows attackers to enumerate user details through the playlistsFromUser.json.php endpoint. Attackers can retrieve sensitive user information including email, password hash, and administrative status by manipulating the users_id parameter.