Security Advisory
CVE-2022-48020
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Vinteo VCC v2.36.4 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the conference parameter. This vulnerability allows attackers to inject arbitrary code which will be executed by the victim users browser.