Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32302
HistorySep 30, 2021 - 5:57 a.m.

Cross-site Scripting (XSS)

2021-09-3005:57:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
zoneminder
edge
cross site scripting
html
javascript
filter parameter

EPSS

0.001

Percentile

37.8%

zoneminder:edge is vulnerable to cross site scripting (XSS). An attacker is able to execute HTML or JavaScript code via a vulnerable ‘filter[AutoExecuteCmd]’ parameter value in the view filter (filter.php) because proper filtration is omitted.

EPSS

0.001

Percentile

37.8%