Логотип exploitDog
bind:CVE-2019-7337
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-7337

Количество 4

Количество 4

ubuntu логотип

CVE-2019-7337

около 7 лет назад

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3 as the view 'events' (events.php) insecurely displays the limit parameter value, without applying any proper output filtration. This issue exists because of the function sortHeader() in functions.php, which insecurely returns the value of the limit query string parameter without applying any filtration.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2019-7337

около 7 лет назад

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3 as the view 'events' (events.php) insecurely displays the limit parameter value, without applying any proper output filtration. This issue exists because of the function sortHeader() in functions.php, which insecurely returns the value of the limit query string parameter without applying any filtration.

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2019-7337

около 7 лет назад

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32 ...

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-prfp-rc42-5739

больше 3 лет назад

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3 as the view 'events' (events.php) insecurely displays the limit parameter value, without applying any proper output filtration. This issue exists because of the function sortHeader() in functions.php, which insecurely returns the value of the limit query string parameter without applying any filtration.

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-7337

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3 as the view 'events' (events.php) insecurely displays the limit parameter value, without applying any proper output filtration. This issue exists because of the function sortHeader() in functions.php, which insecurely returns the value of the limit query string parameter without applying any filtration.

CVSS3: 4.8
0%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-7337

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3 as the view 'events' (events.php) insecurely displays the limit parameter value, without applying any proper output filtration. This issue exists because of the function sortHeader() in functions.php, which insecurely returns the value of the limit query string parameter without applying any filtration.

CVSS3: 4.8
0%
Низкий
около 7 лет назад
debian логотип
CVE-2019-7337

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32 ...

CVSS3: 4.8
0%
Низкий
около 7 лет назад
github логотип
GHSA-prfp-rc42-5739

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3 as the view 'events' (events.php) insecurely displays the limit parameter value, without applying any proper output filtration. This issue exists because of the function sortHeader() in functions.php, which insecurely returns the value of the limit query string parameter without applying any filtration.

CVSS3: 4.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу