CVSS v3
8.8
HIGH
EPSS Score
23.6%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
An os command injection vulnerability exists in the aVideoEncoder wget functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.
An os command injection vulnerability exists in the aVideoEncoder wget functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.
Active exploitation of CVE-2022-32572 has not been confirmed. The EPSS score is 23.6%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2022-32572 has a CVSS v3 base score of 8.8 (HIGH severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).