Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32285
HistorySep 30, 2021 - 5:52 a.m.

Cross-site Scripting (XSS)

2021-09-3005:52:35
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13
zoneminder
cross-site scripting
vulnerability
validation
console view

EPSS

0.001

Percentile

37.8%

zoneminder is vulnerable to cross-site scripting. The vulnerability exists due to a lack of validation via a vulnerable ‘Host’ parameter value in the view console (console.php).