CVE-2026-33716 | WWBN AVideo up to 26.0 control.json.php streamerURL improper authentication
A vulnerability was found in WWBN AVideo up to 26.0. It has been classified as critical. The affected element is an unknown function of the file plugin/Live/standAloneFiles/control.json.php. This manipulation of the argument streamerURL causes improper authentication.
This vulnerability is tracked as CVE-2026-33716. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to apply a patch to fix this issue.