← Back to browse · API

CVE-2024-51482

Severity
CRITICAL
CVSS
10.0
EPSS
0.34979
Risk score
52.24
CISA KEV
No
PoC
Yes
Published
2024-10-31
Modified
2024-11-08
First seen
2026-08-07
Aliases
EUVD-2024-45356
Products
ZoneMinder:zoneminder 1.37.0, < 1.37.65
Sources
euvd EUVD-2024-45356
packetstorm 82015bef134e96500de6f0f7|CVE-2024-51482

Description

ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder v1.37.* <= 1.37.64 is vulnerable to boolean-based SQL Injection in function of web/ajax/event.php. This is fixed in 1.37.65.

References