Search
Search Results (86 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2018-1000832 | 1 Zoneminder | 1 Zoneminder | 2024-11-21 | N/A |
| ZoneMinder version <= 1.32.2 contains a Other/Unknown vulnerability in User-controlled parameter that can result in Disclosure of confidential data, denial of service, SSRF, remote code execution. | ||||
| CVE-2024-51482 | 1 Zoneminder | 1 Zoneminder | 2024-11-08 | 10 Critical |
| ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder v1.37.* <= 1.37.64 is vulnerable to boolean-based SQL Injection in function of web/ajax/event.php. This is fixed in 1.37.65. | ||||
| CVE-2023-41884 | 1 Zoneminder | 1 Zoneminder | 2024-09-13 | 7.1 High |
| ZoneMinder is a free, open source Closed-circuit television software application. In WWW/AJAX/watch.php, Line: 51 takes a few parameter in sql query without sanitizing it which makes it vulnerable to sql injection. This vulnerability is fixed in 1.36.34. | ||||
| CVE-2024-43359 | 1 Zoneminder | 1 Zoneminder | 2024-09-04 | 0 Low |
| ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the montagereview via the displayinterval, speed, and scale parameters. This vulnerability is fixed in 1.36.34 and 1.37.61. | ||||
| CVE-2024-43360 | 1 Zoneminder | 1 Zoneminder | 2024-09-04 | 9.8 Critical |
| ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder is affected by a time-based SQL Injection vulnerability. This vulnerability is fixed in 1.36.34 and 1.37.61. | ||||
| CVE-2024-43358 | 1 Zoneminder | 1 Zoneminder | 2024-09-04 | 6.1 Medium |
| ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the filter view via the filter[Id]. This vulnerability is fixed in 1.36.34 and 1.37.61. | ||||