Логотип exploitDog
bind:CVE-2019-7336
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-7336

Количество 4

Количество 4

ubuntu логотип

CVE-2019-7336

около 7 лет назад

Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the view _monitor_filters.php contains takes in input from the user and saves it into the session, and retrieves it later (insecurely). The values of the MonitorName and Source parameters are being displayed without any output filtration being applied. This relates to the view=cycle value.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2019-7336

около 7 лет назад

Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the view _monitor_filters.php contains takes in input from the user and saves it into the session, and retrieves it later (insecurely). The values of the MonitorName and Source parameters are being displayed without any output filtration being applied. This relates to the view=cycle value.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2019-7336

около 7 лет назад

Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-c97w-qxq4-p2rg

больше 3 лет назад

Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the view _monitor_filters.php contains takes in input from the user and saves it into the session, and retrieves it later (insecurely). The values of the MonitorName and Source parameters are being displayed without any output filtration being applied. This relates to the view=cycle value.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-7336

Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the view _monitor_filters.php contains takes in input from the user and saves it into the session, and retrieves it later (insecurely). The values of the MonitorName and Source parameters are being displayed without any output filtration being applied. This relates to the view=cycle value.

CVSS3: 6.1
0%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-7336

Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the view _monitor_filters.php contains takes in input from the user and saves it into the session, and retrieves it later (insecurely). The values of the MonitorName and Source parameters are being displayed without any output filtration being applied. This relates to the view=cycle value.

CVSS3: 6.1
0%
Низкий
около 7 лет назад
debian логотип
CVE-2019-7336

Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...

CVSS3: 6.1
0%
Низкий
около 7 лет назад
github логотип
GHSA-c97w-qxq4-p2rg

Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the view _monitor_filters.php contains takes in input from the user and saves it into the session, and retrieves it later (insecurely). The values of the MonitorName and Source parameters are being displayed without any output filtration being applied. This relates to the view=cycle value.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу