Barix Instreamer v04.06 and v04.05 contains a stored cross-site scripting (XSS) vulnerability in the Web UI Configuration Streaming Destination input.
| Software | From | Fixed in |
|---|---|---|
| barix / instreamer_firmware | 4.05 | 4.05.x |
| barix / instreamer_firmware | 4.06 | 4.06.x |