PT-2022-2750 · Unknown+1 · Zoneminder+1

Published

2022-04-29

·

Updated

2022-04-29

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions ZoneMinder (affected versions not specified)
Description The issue is related to the ffmpeg file in ZoneMinder video surveillance software, which is caused by incorrect restriction of a directory path with limited access. Exploitation of this issue may allow a remote attacker to execute arbitrary code on the host running the software.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-03267

Affected Products

Zoneminder
Ffmpeg