PT-2023-20437 · Unknown+2 · Zoneminder+2
00Xm1
·
Publicado
2023-02-25
·
Atualizado
2023-11-30
·
CVE-2023-26034
CVSS v3.1
9.6
Crítica
| Vetor | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
ZoneMinder versions prior to 1.36.33 and 1.37.33
Description
The issue is a SQL Injection vulnerability present within the
filter[Query][terms][0][attr] query string parameter of the "/zm/index.php" endpoint. A user with the View or Edit permissions of Events may execute arbitrary SQL, resulting in potential unauthorized data access and modification, authentication and/or authorization bypass, and remote code execution.Recommendations
For versions prior to 1.36.33, update to version 1.36.33 or later.
For versions prior to 1.37.33, update to version 1.37.33 or later.
As a temporary workaround, consider restricting access to the "/zm/index.php" endpoint and limiting the use of the
filter[Query][terms][0][attr] query string parameter until a patch is applied.Exploit
Correção
RCE
SQL injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Alt Linux
Debian
Zoneminder