Reflected XSS exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in the view \'filter\' as it insecurely prints the \'filter[Name]\' (aka Filter name) value on the web page without applying any proper filtration.