Total vulnerabilities in the database
Session fixation exists in ZoneMinder through 1.36.12 as an attacker can poison a session cookie to the next logged-in user.
CVSS v3:
CWEs:
OWASP TOP 10: