Vulnerabilities (CVE)

Filtered by vendor Barix Subscribe
Filtered by product Instreamer
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-65231 1 Barix 2 Instreamer, Instreamer Firmware 2025-12-17 N/A 6.1 MEDIUM
Barix Instreamer v04.06 and earlier is vulnerable to Cross Site Scripting (XSS) in the Web UI I/O & Serial configuration page, specifically the CTS close command user-input field which is stored and later rendered on the Status page.
CVE-2025-65230 1 Barix 2 Instreamer, Instreamer Firmware 2025-12-17 N/A 5.4 MEDIUM
Barix Instreamer v04.06 and v04.05 contains a stored cross-site scripting (XSS) vulnerability in the Web UI Configuration Streaming Destination input.