Security Advisory
CVE-2019-7344
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Reflected XSS exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in the view filter as it insecurely prints the filter[Name] (aka Filter name) value on the web page without applying any proper filtration.