Описание
SQL injection vulnerability in Zoneminder 1.30 and earlier allows remote attackers to execute arbitrary SQL commands via the limit parameter in a log query request to index.php.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | DNE | |
| cosmic | not-affected | 1.30.4+dfsg-1 |
| devel | not-affected | 1.30.4+dfsg-1 |
| disco | not-affected | 1.30.4+dfsg-1 |
| eoan | not-affected | 1.30.4+dfsg-1 |
| esm-apps/focal | not-affected | 1.30.4+dfsg-1 |
| esm-apps/jammy | not-affected | 1.30.4+dfsg-1 |
| esm-apps/noble | not-affected | 1.30.4+dfsg-1 |
| esm-apps/xenial | needed |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
SQL injection vulnerability in Zoneminder 1.30 and earlier allows remote attackers to execute arbitrary SQL commands via the limit parameter in a log query request to index.php.
SQL injection vulnerability in Zoneminder 1.30 and earlier allows remo ...
SQL injection vulnerability in Zoneminder 1.30 and earlier allows remote attackers to execute arbitrary SQL commands via the limit parameter in a log query request to index.php.
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3