Vulnerability Description
ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the montagereview via the displayinterval, speed, and scale parameters. This vulnerability is fixed in 1.36.34 and 1.37.61.
CVSS Score
NONE
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zoneminder | Zoneminder | < 1.36.34 |
Related Weaknesses (CWE)
References
- https://github.com/ZoneMinder/zoneminder/commit/6cc64dddff6144a98680f65ecf8dc249Patch
- https://github.com/ZoneMinder/zoneminder/commit/b51c5df0cb869ca48fccfc6e6fd7c19bPatch
- https://github.com/ZoneMinder/zoneminder/security/advisories/GHSA-pjjm-3qxp-6hj8Third Party Advisory
FAQ
What is CVE-2024-43359?
CVE-2024-43359 is a vulnerability with a CVSS score of 0.0 (NONE). ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the montagereview via the displayinterval, speed, and scale par...
How severe is CVE-2024-43359?
CVE-2024-43359 has been rated NONE with a CVSS base score of 0.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-43359?
Check the references section above for vendor advisories and patch information. Affected products include: Zoneminder Zoneminder.