CVE-2024-58386

CVE-2024-58386 published: ZoneMinder versions 1.37.0 before 1.38.0 contain a path traversal vulnerability in the files view that allows authenticated users to read arbitrary files. The path parameter is not properly validated before being passed to output_file, enabling attackers wi...

View full NVD advisory → ← Back to CVE watch