← back
CVE-2022-29806

CVE-2022-29806

30Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 67%
from disclosure to weapon1 days
Published on NVDApr 26
metasploit+1d
exploitation probability
67%top 1% of all CVEs
observed exploitation
nono source reports it
ZoneMinder before 1.36.13 allows remote code execution via an invalid language. Ability to create a debug log file at an arbitrary pathname contributes to exploitability.
Affected products
n/a · n/a