Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-57825
HistoryApr 01, 2022 - 12:00 a.m.

ZoneMinder Cross-Site Scripting Vulnerability (CNVD-2022-57825)

2022-04-0100:00:00
China National Vulnerability Database
www.cnvd.org.cn
14
zoneminder
video surveillance
cross-site scripting
vulnerability
html
javascript
remote attackers

EPSS

0.001

Percentile

37.8%

ZoneMinder is an open source video surveillance software system. ZoneMinder 1.32.3 and previous versions have a cross-site scripting vulnerability, which stems from the program not being properly filtered, and can be exploited by remote attackers to execute HTML or JavaScript code with the help of the ‘eid’ parameter.