Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gxx4-vhw8-8h73

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.7

Описание

An information disclosure vulnerability exists in the iConfig proxy request of Zabbix server 2.4.X. A specially crafted iConfig proxy request can cause the Zabbix server to send the configuration information of any Zabbix proxy, resulting in information disclosure. An attacker can make requests from an active Zabbix proxy to trigger this vulnerability.

An information disclosure vulnerability exists in the iConfig proxy request of Zabbix server 2.4.X. A specially crafted iConfig proxy request can cause the Zabbix server to send the configuration information of any Zabbix proxy, resulting in information disclosure. An attacker can make requests from an active Zabbix proxy to trigger this vulnerability.

EPSS

Процентиль: 49%
0.00262
Низкий

3.7 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 3.7
ubuntu
почти 8 лет назад

An information disclosure vulnerability exists in the iConfig proxy request of Zabbix server 2.4.X. A specially crafted iConfig proxy request can cause the Zabbix server to send the configuration information of any Zabbix proxy, resulting in information disclosure. An attacker can make requests from an active Zabbix proxy to trigger this vulnerability.

CVSS3: 3.7
nvd
почти 8 лет назад

An information disclosure vulnerability exists in the iConfig proxy request of Zabbix server 2.4.X. A specially crafted iConfig proxy request can cause the Zabbix server to send the configuration information of any Zabbix proxy, resulting in information disclosure. An attacker can make requests from an active Zabbix proxy to trigger this vulnerability.

CVSS3: 3.7
debian
почти 8 лет назад

An information disclosure vulnerability exists in the iConfig proxy re ...

EPSS

Процентиль: 49%
0.00262
Низкий

3.7 Low

CVSS3

Дефекты

CWE-200