Vulnerability Description
ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the filter view via the filter[Id]. This vulnerability is fixed in 1.36.34 and 1.37.61.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zoneminder | Zoneminder | < 1.36.34 |
Related Weaknesses (CWE)
References
- https://github.com/ZoneMinder/zoneminder/commit/062cf568a33fb6a8604ec327b1de8bb2Patch
- https://github.com/ZoneMinder/zoneminder/commit/4602cd0470a3b90b18bcc44b3c86d963Patch
- https://github.com/ZoneMinder/zoneminder/security/advisories/GHSA-6rrw-66rf-6g5fVendor Advisory
FAQ
What is CVE-2024-43358?
CVE-2024-43358 is a vulnerability with a CVSS score of 6.1 (MEDIUM). ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the filter view via the filter[Id]. This vulnerability is fixed...
How severe is CVE-2024-43358?
CVE-2024-43358 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-43358?
Check the references section above for vendor advisories and patch information. Affected products include: Zoneminder Zoneminder.