ZeroHour

CVE-2016-10202

PoC ×2
CVSS 3.0
6.1 medium
EPSS
<1%p55
Published
()
Modified
Description

Cross-site scripting (XSS) vulnerability in Zoneminder 1.30 and earlier allows remote attackers to inject arbitrary web script or HTML via the path info to index.php.

Vendors
zoneminder
Products
zoneminder
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.