Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

WWBN — Vulnerabilities & Security Advisories 177

Browse all 177 CVE security advisories affecting WWBN. AI-powered Chinese analysis, POCs, and references for each vulnerability.

WWBN operates as a provider of web-based business solutions, primarily focusing on content management and e-commerce platforms that enable organizations to manage digital assets and online transactions. Historically, its software has been susceptible to a wide array of critical vulnerabilities, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from insufficient input validation and outdated dependencies. These flaws have frequently allowed attackers to escalate privileges, execute arbitrary commands, or exfiltrate sensitive data. The high volume of recorded Common Vulnerabilities and Exposures (CVEs) indicates persistent security challenges within the codebase, reflecting difficulties in maintaining rigorous patch management and secure coding practices over time. Consequently, organizations deploying WWBN solutions face significant risks if they do not implement robust network segmentation and timely updates to mitigate these known attack vectors.

Top products by WWBN: AVideo AVideo-Encoder
CVE IDTitleCVSSSeverityPublished
CVE-2026-33035 Unauthenticated Reflected XSS via innerHTML in AVideo — AVideoCWE-79 6.1 -2026-03-20
CVE-2026-33025 AVideo-Encoder is Vulnerable to Authenticated SQL Injection via ORDER BY Clause — AVideo-EncoderCWE-89 9.8 -2026-03-20
CVE-2026-33024 AVideo-Encoder has Unauthenticated Blind Server-Side Request Forgery via Public Thumbnail Generator — AVideo-EncoderCWE-918 9.8 -2026-03-20
CVE-2026-30885 WWBN AVideo - Unauthenticated IDOR - Playlist Information Disclosure — AVideoCWE-306 5.3AIMediumAI2026-03-09
CVE-2026-29058 AVideo: Unauthenticated OS Command Injection via base64Url in objects/getImage.php — AVideo-EncoderCWE-78 9.8 Critical2026-03-06
CVE-2026-28501 WWBN AVideo: Unauthenticated SQL Injection via JSON Request Bypass in objects/videos.json.php — AVideoCWE-89 9.8 Critical2026-03-06
CVE-2026-28502 WWBN AVideo: Authenticated Remote Code Execution via Unsafe Plugin ZIP Extraction — AVideoCWE-434 7.2 -2026-03-06
CVE-2026-29093 WWBN AVideo: Unauthenticated PHP session store exposed to host network via published memcached port — AVideoCWE-287 8.1 High2026-03-06
CVE-2026-27732 AVideo has Authenticated Server-Side Request Forgery via downloadURL in aVideoEncoder.json.php — AVideoCWE-918 8.1 -2026-02-24
CVE-2026-27568 AVideo has Stored Cross-Site Scripting via Markdown Comment Injection — AVideoCWE-79 9.0 -2026-02-24
CVE-2025-46410 WWBN AVideo 跨站脚本漏洞 — AVideoCWE-79 9.6 Critical2025-07-24
CVE-2025-53084 多款产品跨站脚本漏洞 — AVideoCWE-79 9.0 Critical2025-07-24
CVE-2025-50128 WWBN AVideo 跨站脚本漏洞 — AVideoCWE-79 9.6 Critical2025-07-24
CVE-2025-36548 WWBN AVideo 跨站脚本漏洞 — AVideoCWE-79 8.3 High2025-07-24
CVE-2025-41420 WWBN AVideo 跨站脚本漏洞 — AVideoCWE-79 9.6 Critical2025-07-24
CVE-2025-25214 WWBN AVideo 竞争条件问题漏洞 — AVideoCWE-362 8.8 High2025-07-24
CVE-2025-48732 WWBN AVideo 安全漏洞 — AVideoCWE-184 7.3 High2025-07-24
CVE-2023-47171 WWBN AVideo 安全漏洞 — AVideoCWE-73 6.5 Medium2024-01-10
CVE-2023-49864 WWBN AVideo 安全漏洞 — AVideoCWE-73 6.5 Medium2024-01-10
CVE-2023-49738 WWBN AVideo 安全漏洞 — AVideoCWE-73 7.5 High2024-01-10
CVE-2023-49862 WWBN AVideo 安全漏洞 — AVideoCWE-73 6.5 Medium2024-01-10
CVE-2023-49863 WWBN AVideo 安全漏洞 — AVideoCWE-73 6.5 Medium2024-01-10
CVE-2023-48728 WWBN AVideo 跨站脚本漏洞 — AVideoCWE-79 9.6 Critical2024-01-10
CVE-2023-48730 WWBN AVideo 跨站脚本漏洞 — AVideoCWE-79 8.5 High2024-01-10
CVE-2023-47861 WWBN AVideo 跨站脚本漏洞 — AVideoCWE-79 9.0 Critical2024-01-10
CVE-2023-47862 WWBN AVideo 安全漏洞 — AVideoCWE-73 9.8 Critical2024-01-10
CVE-2023-49715 WWBN AVideo 代码问题漏洞 — AVideoCWE-434 4.3 Medium2024-01-10
CVE-2023-49589 WWBN AVideo 授权问题漏洞 — AVideoCWE-640 8.8 High2024-01-10
CVE-2023-50172 WWBN AVideo 授权问题漏洞 — AVideoCWE-640 5.3 Medium2024-01-10
CVE-2023-49599 WWBN AVideo 安全特征问题漏洞 — AVideoCWE-331 9.8 Critical2024-01-10

This page lists every published CVE security advisory associated with WWBN. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.