Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32298
HistorySep 30, 2021 - 5:56 a.m.

Cross-site Scripting (XSS)

2021-09-3005:56:40
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
zoneminder
xss
vulnerability
html
javascript
log view

EPSS

0.001

Percentile

37.8%

zoneminder:edge is vulnerable to cross site scripting (XSS). An attacker is able to execute HTML or JavaScript code in the view ‘log’ as it insecurely prints the ‘Log Message’ value on the web page without applying any proper filtration. This relates to the view=logs value.

EPSS

0.001

Percentile

37.8%