Medium severity6.1NVD Advisory· Published Sep 17, 2020· Updated Jun 17, 2026
CVE-2020-25729
CVE-2020-25729
Description
ZoneMinder before 1.34.21 has XSS via the connkey parameter to download.php or export.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:zoneminder:zoneminder:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:zoneminder:zoneminder:*:*:*:*:*:*:*:*range: <1.34.21
- (no CPE)range: <1.34.21
- ZoneMinder/ZoneMinderdescription
Patches
Vulnerability mechanics
References
3- github.com/ZoneMinder/zoneminder/commit/9268db14a79c4ccd444c2bf8d24e62b13207b413nvdPatchThird Party Advisory
- forums.zoneminder.com/viewforum.phpnvdVendor Advisory
- github.com/ZoneMinder/zoneminder/releases/tag/1.34.21nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.