Known vulnerabilities in ZoneMinder - page 2
Vendor:
ZoneMinder.com
Software:
ZoneMinder
Software CPE:
cpe:2.3:a:zoneminder_com:zoneminder:*:*:*:*:*:*:*:*
Total vulnerabilities:
26
Public exploits:
7
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
1.39.10
1.39.9
1.39.8
1.39.7
1.39.6
1.39.5
1.39.4
1.39.3
1.39.2
1.39.1
1.39.0
1.38.4
1.36.39
1.39.11
1.38.3
1.38.2
1.36.38
1.38.1
1.38.0
1.36.37
1.37.74
1.37.65
1.37.64
1.36.63
1.36.36
1.37.63
1.36.35
1.36.34
1.37.61
1.37
1.37.33
1.36.33
1.36.32
1.37.23
1.37.24
1.36.31
1.36.30
1.36.29
1.36.28
1.36.27
1.36.26
1.36.25
1.36.24
1.36.23
1.36.22
1.36.21
1.36.20
1.36.19
1.36.18
1.36.17
1.36.16
1.36.15
1.36.14
1.36.13
1.36.12
1.36.11
1.36.10
1.36.9
1.36.8
1.36.7
1.36.6
1.36.5
1.36.4
1.36.3
1.36.2
1.36.1
1.36.0
1.34.26
1.34.25
1.34.24
1.34.23
1.34.22
1.34.21
1.34.20
1.34.19
1.34.18
1.34.17
1.34.16
1.34.15
1.34.14
1.34.13
1.34.12
1.34.11
1.34.10
1.34.9
1.34.8
1.34.7
1.34.6
1.34.5
1.34.4
1.34.3
1.34.2
1.34.1
1.34.0
1.32.2
1.32.1
1.32.0
1.30.5
1.30.4
1.30.3
1.30.0
1.29.0
1.28.1
1.28.0
1.27.0
1.26.5
1.26.4
1.26.3
1.26.2
1.26.1
1.26.0
1.25
1.30.2
1.32.3
1.24.0
1.25.0
1.24.1
1.24.2
1.24.3
1.24.4
1.23.3
1.23.0
1.22.1
1.21.2
1.23.1
1.22.2
1.21.3
1.23.2
1.22.3
1.21.4
1.22.0
1.21.1
1.20.0
1.21.0
1.20.1
1.19.4
1.19.1
1.19.2
0.9.8
0.9.10
1.19.5
0.9.13
0.9.12
1.19.3
0.9.7
0.9.15
0.9.14
0.9.9
1.19.0
1.18.1
1.17.2
1.17.0
1.18.0
1.17.1
0.9.11
0.0.1
0.9.16
Vulnerabilities (26)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU35771 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2019-13072 |
CWE-79 | Low | - | 30.06.2019 |
SB2019012432 |
||
| #VU36124 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2019-8424 |
CWE-89 | High | 1.32.3 | 18.02.2019 |
SB2019021823 |
||
| #VU36189 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2019-6777 |
CWE-79 | Low | - | 24.01.2019 |
SB2019012432 |
||
| #VU39419 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2017-7203 |
CWE-79 | Low | - | 21.03.2017 |
SB2017032109 |
||
| #VU42983 - Improper input validation CVE-2013-0232 |
CWE-20 | Medium | - | 20.03.2013 |
SB2013032005 |
||
| #VU42984 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2013-0332 |
CWE-22 | Medium | - | 20.03.2013 |
SB2013032006 |
Showing elements 21 - 40 out of 26