Skip to content

Security Fix

High
DanielnetoDotCom published GHSA-xq8j-fhg5-hr39 Jan 29, 2021

Package

No package listed

Affected versions

<10.1

Patched versions

10.2

Description

Impact

A user can get admin control

Patches

All queries now remove the pass hash and the recoverPass hash

Workarounds

In case you need to recover the admin pass, use this...
https://github.com/WWBN/AVideo/wiki/Reset-a-Password#how-to-reset-a-password-with-ssh

For more information

If you have any questions or comments about this advisory:

  • Open an issue

Severity

High

CVE ID

CVE-2021-21286

Weaknesses

No CWEs