ZoneMinder Language Settings Remote Code Execution
Posted by deepcore on May 6, 2022 – 4:51 am
This Metasploit module exploits an arbitrary file write in the debug log file option chained with a path traversal in the language settings that leads to remote code execution in ZoneMinder surveillance software versions before 1.36.13 and before 1.37.11
Post a reply
You must be logged in to post a comment.