Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r6x3-vwpm-5vwg

Опубликовано: 03 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.3

Описание

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

EPSS

Процентиль: 1%
0.00012
Низкий

7.3 High

CVSS4

Дефекты

CWE-427

Связанные уязвимости

ubuntu
4 месяца назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

nvd
4 месяца назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

debian
4 месяца назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file ...

CVSS3: 7.8
fstec
4 месяца назад

Уязвимость компонентов Zabbix Agent и Agent2 системы мониторинга ИТ-инфраструктуры Zabbix, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 1%
0.00012
Низкий

7.3 High

CVSS4

Дефекты

CWE-427