ZeroHour

CVE-2019-7344

PoC
CVSS 3.0
6.1 medium
EPSS
<1%p57
Published
()
Modified
Description

Reflected XSS exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in the view 'filter' as it insecurely prints the 'filter[Name]' (aka Filter name) value on the web page without applying any proper filtration.

Vendors
zoneminder
Products
zoneminder
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.