CVE-2024-51482

ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder v1.37.* <= 1.37.64 is vulnerable to boolean-based SQL Injection in function of web/ajax/event.php. This is fixed in 1.37.65.
Configurations

No configuration.

History

05 Nov 2024, 14:15

Type Values Removed Values Added
Summary
  • (es) ZoneMinder es una aplicación de software de circuito cerrado de televisión gratuita y de código abierto. ZoneMinder v1.37.* &lt;= 1.37.64 es vulnerable a la inyección SQL basada en booleanos en función de web/ajax/event.php. Esto se solucionó en 1.37.64.
Summary (en) ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder v1.37.* <= 1.37.64 is vulnerable to boolean-based SQL Injection in function of web/ajax/event.php. This is fixed in 1.37.64. (en) ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder v1.37.* <= 1.37.64 is vulnerable to boolean-based SQL Injection in function of web/ajax/event.php. This is fixed in 1.37.65.

31 Oct 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-31 18:15

Updated : 2024-11-05 14:15


NVD link : CVE-2024-51482

Mitre link : CVE-2024-51482

CVE.ORG link : CVE-2024-51482


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')