First published: Mon Aug 12 2024(Updated: )
ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the filter view via the filter[Id]. This vulnerability is fixed in 1.36.34 and 1.37.61.
Credit: security-advisories@github.com
Affected Software | Affected Version | How to fix |
---|---|---|
ZoneMinder | <1.36.34 | |
ZoneMinder | >=1.37.00<1.37.61 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43358 is classified as a cross-site scripting vulnerability, which can potentially impact user security.
To fix CVE-2024-43358, upgrade ZoneMinder to version 1.36.34 or 1.37.61 or later.
CVE-2024-43358 affects ZoneMinder versions prior to 1.36.34 and versions between 1.37.00 and 1.37.61.
Users of affected ZoneMinder versions may be vulnerable to cross-site scripting attacks, potentially allowing attackers to execute malicious scripts.
You can check your ZoneMinder version and compare it against the vulnerable versions listed in the CVE-2024-43358 details.