Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8w8h-m7f2-m6c4

Опубликовано: 02 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6
CVSS3: 6.5

Описание

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations, ultimately leading to a service crash.

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations, ultimately leading to a service crash.

EPSS

Процентиль: 42%
0.00197
Низкий

6 Medium

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 1 года назад

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations, ultimately leading to a service crash.

CVSS3: 6.5
nvd
около 1 года назад

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations, ultimately leading to a service crash.

CVSS3: 6.5
debian
около 1 года назад

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled ...

CVSS3: 6.5
fstec
около 1 года назад

Уязвимость сервера универсальной системы мониторинга Zabbix, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
redos
10 месяцев назад

Уязвимость zabbix7.2-server-pgsql

EPSS

Процентиль: 42%
0.00197
Низкий

6 Medium

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-770