CVE-2026-33499 | WWBN AVideo up to 26.0 Parameter view/forbiddenPage.php unlockPassword cross site scripting
A vulnerability categorized as problematic has been discovered in WWBN AVideo up to 26.0. This vulnerability affects unknown code of the file view/forbiddenPage.php of the component Parameter Handler. The manipulation of the argument unlockPassword results in cross site scripting.
This vulnerability is reported as CVE-2026-33499. The attack can be launched remotely. No exploit exists.
It is best practice to apply a patch to resolve this issue.