İçeriğe atla
Noroxi

ZoneMinder kayıtları

zoneminder üreticisine ait 86 yayımlanmış kayıt.

Tüm kayıtlar

86 kayıt
  • CVE-2023-26035
    63Bu hafta

    ZoneMinder vulnerable to Missing Authorization

    KritikCVSS 9,8SilahlaştırılmışEPSS %80

    zoneminder · zoneminder24 Şub 2023

  • CVE-2022-29806
    59Planlayın

    ZoneMinder before 1.36.13 allows remote code execution via an invalid language.

    KritikCVSS 9,8SilahlaştırılmışEPSS %67

    zoneminder · zoneminder26 Nis 2022

  • CVE-2024-51482
    50Planlayın

    Boolean-based SQL Injection in ZoneMinder v1.37.* <= 1.37.64

    KritikCVSS 9,9Kavram kanıtıEPSS %37

    zoneminder · zoneminder31 Eki 2024

  • CVE-2013-0232
    44Planlayın

    includes/functions.php in ZoneMinder Video Server 1.24.0, 1.25.0, and earlier allows remote attackers to execute arbitrary commands via shel

    YüksekCVSS 7,5SilahlaştırılmışEPSS %48

    zoneminder · zoneminder20 Mar 2013

  • CVE-2018-1000832
    41Planlayın

    ZoneMinder version <= 1.32.2 contains a Other/Unknown vulnerability in User-controlled parameter that can result in Disclosure of confidenti

    KritikCVSS 9,8İstismar yokEPSS %6

    zoneminder · zoneminder20 Ara 2018

  • CVE-2024-43360
    41Planlayın

    ZoneMinder Time-based SQL Injection

    KritikCVSS 9,8Kavram kanıtıEPSS %6

    zoneminder · zoneminder12 Ağu 2024

  • CVE-2008-3882
    41Planlayın

    Unspecified "Command Injection" vulnerability in ZoneMinder 1.23.3 and earlier allows remote attackers to execute arbitrary commands via (1)

    KritikCVSS 10,0İstismar yokEPSS %3

    zoneminder · zoneminder2 Eyl 2008

  • CVE-2019-6991
    40Planlayın

    A classic Stack-based buffer overflow exists in the zmLoadUser() function in zm_user.cpp of the zmu binary in ZoneMinder through 1.32.3, all

    KritikCVSS 9,8İstismar yokEPSS %3

    zoneminder · zoneminder28 Oca 2019

  • CVE-2018-1000833
    40Planlayın

    ZoneMinder version <= 1.32.2 contains a Other/Unknown vulnerability in User-controlled parameter that can result in Disclosure of confidenti

    KritikCVSS 9,8İstismar yokEPSS %3

    zoneminder · zoneminder20 Ara 2018

  • CVE-2019-8427
    40Planlayın

    daemonControl in includes/functions.php in ZoneMinder before 1.32.3 allows command injection via shell metacharacters.

    KritikCVSS 9,8İstismar yokEPSS %2

    zoneminder · zoneminder17 Şub 2019

  • CVE-2016-10204
    40Planlayın

    SQL injection vulnerability in Zoneminder 1.30 and earlier allows remote attackers to execute arbitrary SQL commands via the limit parameter

    KritikCVSS 9,8Kavram kanıtıEPSS %2

    zoneminder · zoneminder3 Mar 2017

  • CVE-2025-65791
    40Planlayın

    ZoneMinder v1.36.34 is vulnerable to Command Injection in web/views/image.php.

    KritikCVSS 9,8Kavram kanıtıEPSS %2

    zoneminder · zoneminder18 Şub 2026

  • CVE-2019-8429
    39İzleyin

    ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php filter[Query][terms][0][cnj] parameter.

    KritikCVSS 9,8İstismar yokEPSS %2

    zoneminder · zoneminder17 Şub 2019

  • CVE-2019-8423
    39İzleyin

    ZoneMinder through 1.32.3 has SQL Injection via the skins/classic/views/events.php filter[Query][terms][0][cnj] parameter.

    KritikCVSS 9,8İstismar yokEPSS %2

    zoneminder · zoneminder17 Şub 2019

  • CVE-2019-8428
    39İzleyin

    ZoneMinder before 1.32.3 has SQL Injection via the skins/classic/views/control.php groupSql parameter, as demonstrated by a newGroup[Monitor

    KritikCVSS 9,8İstismar yokEPSS %2

    zoneminder · zoneminder17 Şub 2019

  • CVE-2019-8424
    39İzleyin

    ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php sort parameter.

    KritikCVSS 9,8İstismar yokEPSS %2

    zoneminder · zoneminder17 Şub 2019

  • CVE-2023-26036
    39İzleyin

    ZoneMinder contains Local File Inclusion vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    zoneminder · zoneminder24 Şub 2023

  • CVE-2023-26037
    39İzleyin

    ZoneMinder contains SQL Injection via report_event_audit

    KritikCVSS 9,8İstismar yokEPSS %1

    zoneminder · zoneminder24 Şub 2023

  • CVE-2023-26034
    35İzleyin

    ZoneMinder SQL Injection

    YüksekCVSS 8,8İstismar yokEPSS %2

    zoneminder · zoneminder24 Şub 2023

  • CVE-2023-26039
    35İzleyin

    ZoneMinder vulnerable to OS Command injection in daemonControl() API

    YüksekCVSS 8,8Kavram kanıtıEPSS %1

    zoneminder · zoneminder24 Şub 2023

  • CVE-2017-5368
    35İzleyin

    ZoneMinder v1.30 and v1.29, an open-source CCTV server web application, is vulnerable to CSRF (Cross Site Request Forgery) which allows a re

    YüksekCVSS 8,8İstismar yokEPSS %1

    zoneminder · zoneminder6 Şub 2017

  • CVE-2016-10206
    35İzleyin

    Cross-site request forgery (CSRF) vulnerability in Zoneminder 1.30 and earlier allows remote attackers to hijack the authentication of users

    YüksekCVSS 8,8İstismar yokEPSS %1

    zoneminder · zoneminder3 Mar 2017

  • CVE-2019-7346
    35İzleyin

    A CSRF check issue exists in ZoneMinder through 1.32.3 as whenever a CSRF check fails, a callback function is called displaying a "Try again

    YüksekCVSS 8,8İstismar yokEPSS %1

    zoneminder · zoneminder4 Şub 2019

  • CVE-2026-27470
    35İzleyin

    ZoneMinder: Second-Order SQL Injection in `getNearEvents()` via Stored Event Name and Cause Fields

    YüksekCVSS 8,8Kavram kanıtıEPSS %1

    zoneminder · zoneminder21 Şub 2026

  • CVE-2016-10140
    32İzleyin

    Information disclosure and authentication bypass vulnerability exists in the Apache HTTP Server configuration bundled with ZoneMinder v1.30

    YüksekCVSS 7,5Kavram kanıtıEPSS %7

    zoneminder · zoneminder13 Oca 2017