CVE-2024-43358: XSS vulnerability in filter view
ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the filter view via the filter[Id]. This vulnerability is fixed in 1.36.34 and 1.37.61.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43358?
CVE-2024-43358 is classified as a cross-site scripting vulnerability, which can potentially impact user security.
How do I fix CVE-2024-43358?
To fix CVE-2024-43358, upgrade ZoneMinder to version 1.36.34 or 1.37.61 or later.
Which versions of ZoneMinder are affected by CVE-2024-43358?
CVE-2024-43358 affects ZoneMinder versions prior to 1.36.34 and versions between 1.37.00 and 1.37.61.
What are the implications of CVE-2024-43358 for users?
Users of affected ZoneMinder versions may be vulnerable to cross-site scripting attacks, potentially allowing attackers to execute malicious scripts.
How can I check if my ZoneMinder installation is vulnerable to CVE-2024-43358?
You can check your ZoneMinder version and compare it against the vulnerable versions listed in the CVE-2024-43358 details.