Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-9450

Опубликовано: 02 янв. 2015
Источник: debian
EPSS Низкий

Описание

Multiple SQL injection vulnerabilities in chart_bar.php in the frontend in Zabbix before 1.8.22, 2.0.x before 2.0.14, and 2.2.x before 2.2.8 allow remote attackers to execute arbitrary SQL commands via the (1) itemid or (2) periods parameter.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zabbixfixed1:2.2.7+dfsg-2package
zabbixend-of-lifesqueezepackage

Примечания

  • https://support.zabbix.com/browse/ZBX-8582

  • https://github.com/svn2github/zabbix/commit/984bd3bec2d6ca5a80104a5574d19b7f4d04f24b

EPSS

Процентиль: 63%
0.00458
Низкий

Связанные уязвимости

nvd
около 11 лет назад

Multiple SQL injection vulnerabilities in chart_bar.php in the frontend in Zabbix before 1.8.22, 2.0.x before 2.0.14, and 2.2.x before 2.2.8 allow remote attackers to execute arbitrary SQL commands via the (1) itemid or (2) periods parameter.

github
больше 3 лет назад

Multiple SQL injection vulnerabilities in chart_bar.php in the frontend in Zabbix before 1.8.22, 2.0.x before 2.0.14, and 2.2.x before 2.2.8 allow remote attackers to execute arbitrary SQL commands via the (1) itemid or (2) periods parameter.

EPSS

Процентиль: 63%
0.00458
Низкий