Description

ZoneMinder is a free, open source Closed-circuit television software application. In WWW/AJAX/watch.php, Line: 51 takes a few parameter in sql query without sanitizing it which makes it vulnerable to sql injection. This vulnerability is fixed in 1.36.34.

INFO

Published Date :

2024-08-12T19:39:34.575Z

Last Modified :

2024-08-13T17:34:56.389Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2023-41884 vulnerability.

Vendors Products
Zoneminder
  • Zoneminder

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact