CVE-2014-1906 | VideoWhisper Live Streaming Integration plugin up to 4.24 lb_status.php ct cross site scripting (Advisory 125454 / EDB-31986)
A vulnerability was found in VideoWhisper Live Streaming Integration plugin up to 4.24. It has been classified as problematic. Affected is an unknown function of the file lb_status.php. The manipulation of the argument ct leads to cross site scripting.
This vulnerability is traded as CVE-2014-1906. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.