Medium severity6.5OSV Advisory· Published Feb 4, 2019· Updated Jun 17, 2026
CVE-2019-7351
CVE-2019-7351
Description
Log Injection exists in ZoneMinder through 1.32.3, as an attacker can entice the victim to visit a specially crafted link, which in turn will inject a custom Log message provided by the attacker in the 'log' view page, as demonstrated by the message=User%20'admin'%20Logged%20in value.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
31.32.3, v1.25, v1.26.0, …+ 2 more
- (no CPE)range: 1.32.3, v1.25, v1.26.0, …
- cpe:2.3:a:zoneminder:zoneminder:*:*:*:*:*:*:*:*range: <=1.32.3
- (no CPE)range: <=1.32.3
Patches
Vulnerability mechanics
References
1- github.com/ZoneMinder/zoneminder/issues/2466nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.