Cross Site Scripting (XSS) vulnerability in objects/function.php in function getDeviceID in WWBN AVideo through 11.6, via the yptDevice parameter to view/include/head.php.
| Software | From | Fixed in |
|---|---|---|
wwbn / avideo
|
- | 11.6.x |