Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32303
HistorySep 30, 2021 - 5:57 a.m.

Cross-site Scripting (XSS)

2021-09-3005:57:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
cross-site scripting
zoneminder
validation
parameter

EPSS

0.001

Percentile

37.8%

zoneminder is vulnerable to Cross Site Scripting. The vulnerability exists due to a lack of validation in the ‘newMonitor[Method]’ parameter value in the view monitor (monitor.php).

EPSS

0.001

Percentile

37.8%