CVE detail
CVE-2008-6755 — CVE-2008-6755
Published 2009-04-27 · Modified 2026-06-16 · Vendor zoneminder · Product zoneminder · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0120
EPSS probability
exploitation probability, 30d
65.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
ZoneMinder 1.23.3 on Fedora 10 sets the ownership of /etc/zm.conf to the apache user account, and sets the permissions to 0600, which makes it easier for remote attackers to modify this file by accessing it through a (1) PHP or (2) CGI script.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References