Zoneminder
Advisory ID: icsa-26-237-02
View CSAF Summary Successful exploitation of this vulnerability could result in full Remote Code Execution (RCE) as the web server user. The following versions of Zoneminder are affected: Zoneminder 1.37.48|1.38.3 CVSS Vendor Equipment Vulnerabilities v3 8.8 Zoneminder Zoneminder Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Background Critical Infrast
Severity: high
Published (UTC): 2026-08-25T12:00:00.000Z
Source: CERT
Original source: https://www.cisa.gov/news-events/ics-advisories/icsa-26-237-02View original sourceLoading BASE INTEL…