CVE-2022-36223 Information
Dec 17, 2022
cve
Description
In Emby Server 4.6.7.0 the playlist name field is vulnerable to XSS stored where it is possible to steal the administrator access token and flip or steal the media server administrator account.
Reference
https://medium.com/@cupc4k3/administrator-account-takeover-in-emby-media-server-616fc2a6704f
Share on: