Lucene search

K
osvGoogleOSV:CVE-2022-29806
HistoryApr 26, 2022 - 4:15 a.m.

CVE-2022-29806

2022-04-2604:15:42
Google
osv.dev
9
zoneminder
rce
vulnerability
language setting
debug log
exploitability
software

AI Score

7.7

Confidence

Low

EPSS

0.39

Percentile

97.3%

ZoneMinder before 1.36.13 allows remote code execution via an invalid language. Ability to create a debug log file at an arbitrary pathname contributes to exploitability.