跳转到帖子

ZoneMinder Snapshots Command Injection

recommended_posts

发布于
  • Members

ZoneMinder Snapshots Command Injection

Disclosed
02/24/2023
Created
11/11/2023

Description

This module exploits an unauthenticated command injection in zoneminder that can be exploited by appending a command to the "create monitor ids[]"-action of the snapshot view. Affected versions: < 1.36.33, < 1.37.33

Author(s)

  • UnblvR
  • whotwagner

Platform

Linux,Unix

Development

  • Source Code
  • History
  • 查看数 697
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…