CVE-2019-8428
published 2019-02-18CVE-2019-8428: ZoneMinder before 1.32.3 has SQL Injection via the skins/classic/views/control.php groupSql parameter, as demonstrated by a newGroup[MonitorIds][] value.
PriorityP350critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
1.60%
72.9th percentile
ZoneMinder before 1.32.3 has SQL Injection via the skins/classic/views/control.php groupSql parameter, as demonstrated by a newGroup[MonitorIds][] value.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | zoneminder | < zoneminder 1.34.6-1 (bookworm) | zoneminder 1.34.6-1 (bookworm) |
| zoneminder | zoneminder | < 1.32.3 | 1.32.3 |
| zoneminder | zoneminder | >= 0 < 1.34.6-1 | 1.34.6-1 |
| zoneminder | zoneminder | >= 0 < 1.34.6-1 | 1.34.6-1 |
| zoneminder | zoneminder | >= 0 < 1.34.6-1 | 1.34.6-1 |
| zoneminder | zoneminder | >= 0 < 1.34.6-1 | 1.34.6-1 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2019-8428: zoneminder - ZoneMinder before 1.32.3 has SQL Injection via the skins/classic/views/control.p...
vendor_debian·2019·CVSS 9.8
CVE-2019-8428 [CRITICAL] CVE-2019-8428: zoneminder - ZoneMinder before 1.32.3 has SQL Injection via the skins/classic/views/control.p...
ZoneMinder before 1.32.3 has SQL Injection via the skins/classic/views/control.php groupSql parameter, as demonstrated by a newGroup[MonitorIds][] value.
Scope: local
bookworm: resolved (fixed in 1.34.6-1)
bullseye: resolved (fixed in 1.34.6-1)
forky: resolved (fixed in 1.34.6-1)
sid: resolved (fixed in 1.34.6-1)
trixie: resolved (fixed in 1.34.6-1)
GHSA
GHSA-7f2f-855w-j2r6: ZoneMinder before 1
ghsa_unreviewed·2022-05-14
CVE-2019-8428 [CRITICAL] CWE-89 GHSA-7f2f-855w-j2r6: ZoneMinder before 1
ZoneMinder before 1.32.3 has SQL Injection via the skins/classic/views/control.php groupSql parameter, as demonstrated by a newGroup[MonitorIds][] value.
OSV
linux, linux-aws, linux-gcp, linux-gcp-5.3, linux-hwe, linux-kvm, linux-oracle, linux-oracle-5.3, linux-raspi2, linux-raspi2-5.3 vulnerabilities
osv·2020-04-10·CVSS 6.5
CVE-2019-19046 linux, linux-aws, linux-gcp, linux-gcp-5.3, linux-hwe, linux-kvm, linux-oracle, linux-oracle-5.3, linux-raspi2, linux-raspi2-5.3 vulnerabilities
linux, linux-aws, linux-gcp, linux-gcp-5.3, linux-hwe, linux-kvm, linux-oracle, linux-oracle-5.3, linux-raspi2, linux-raspi2-5.3 vulnerabilities
It was discovered that the IPMI message handler implementation in the Linux
kernel did not properly deallocate memory in certain situations. A local
attacker could use this to cause a denial of service (kernel memory
exhaustion). (CVE-2019-19046)
Al Viro discovered that the vfs layer in the Linux kernel contained a use-
after-free vulnerability. A local attacker could use this to cause a denial
of service (system crash) or possibly expose sensitive information (kernel
memory). (CVE-2020-8428)
OSV
linux-azure, linux-gcp, linux-gke-5.0, linux-oem-osp1, linux-oracle-5.0 vulnerabilities
osv·2020-04-07·CVSS 6.5
CVE-2019-19046 linux-azure, linux-gcp, linux-gke-5.0, linux-oem-osp1, linux-oracle-5.0 vulnerabilities
linux-azure, linux-gcp, linux-gke-5.0, linux-oem-osp1, linux-oracle-5.0 vulnerabilities
It was discovered that the IPMI message handler implementation in the Linux
kernel did not properly deallocate memory in certain situations. A local
attacker could use this to cause a denial of service (kernel memory
exhaustion). (CVE-2019-19046)
Al Viro discovered that the vfs layer in the Linux kernel contained a use-
after-free vulnerability. A local attacker could use this to cause a denial
of service (system crash) or possibly expose sensitive information (kernel
memory). (CVE-2020-8428)
OSV
CVE-2019-8428: ZoneMinder before 1
osv·2019-02-18·CVSS 9.8
CVE-2019-8428 [CRITICAL] CVE-2019-8428: ZoneMinder before 1
ZoneMinder before 1.32.3 has SQL Injection via the skins/classic/views/control.php groupSql parameter, as demonstrated by a newGroup[MonitorIds][] value.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/LoRexxar/CVE_Request/tree/master/zoneminder%20vul%20before%20v1.32.3#skinsclassicviewscontrolphp-line-35-second-order-sqlihttps://www.seebug.org/vuldb/ssvid-97765https://github.com/LoRexxar/CVE_Request/tree/master/zoneminder%20vul%20before%20v1.32.3#skinsclassicviewscontrolphp-line-35-second-order-sqlihttps://www.seebug.org/vuldb/ssvid-97765
2019-02-18
Published