Medium severity6.1OSV Advisory· Published Jan 28, 2019· Updated Jun 17, 2026
CVE-2019-6992
CVE-2019-6992
Description
A stored-self XSS exists in web/skins/classic/views/controlcaps.php of ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in a vulnerable field via a long NAME or PROTOCOL to the index.php?view=controlcaps URI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
31.32.3, v1.25, v1.26.0, …+ 2 more
- (no CPE)range: 1.32.3, v1.25, v1.26.0, …
- cpe:2.3:a:zoneminder:zoneminder:*:*:*:*:*:*:*:*range: <=1.32.3
- (no CPE)range: <=1.32.3
Patches
Vulnerability mechanics
References
2- github.com/ZoneMinder/zoneminder/commit/8c5687ca308e441742725e0aff9075779fa1a498nvdPatchThird Party Advisory
- github.com/ZoneMinder/zoneminder/issues/2445nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.