Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-36464

Опубликовано: 27 нояб. 2024
Источник: nvd
CVSS3: 2.7
EPSS Низкий

Описание

When exporting media types, the password is exported in the YAML in plain text. This appears to be a best practices type issue and may have no actual impact. The user would need to have permissions to access the media types and therefore would be expected to have access to these passwords.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*
Версия от 6.0.0 (включая) до 6.0.30 (исключая)
cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*
Версия от 6.4.0 (включая) до 6.4.15 (исключая)

EPSS

Процентиль: 12%
0.00041
Низкий

2.7 Low

CVSS3

Дефекты

CWE-256

Связанные уязвимости

CVSS3: 2.7
ubuntu
около 1 года назад

When exporting media types, the password is exported in the YAML in plain text. This appears to be a best practices type issue and may have no actual impact. The user would need to have permissions to access the media types and therefore would be expected to have access to these passwords.

CVSS3: 2.7
debian
около 1 года назад

When exporting media types, the password is exported in the YAML in pl ...

CVSS3: 2.7
github
около 1 года назад

When exporting media types, the password is exported in the YAML in plain text. This appears to be a best practices type issue and may have no actual impact. The user would need to have permissions to access the media types and therefore would be expected to have access to these passwords.

CVSS3: 2.7
fstec
около 1 года назад

Уязвимость системы мониторинга ИТ-инфраструктуры Zabbix, связанная с хранением пароля в незашифрованном виде, позволяющая нарушителю получить доступ к защищаемой информации

EPSS

Процентиль: 12%
0.00041
Низкий

2.7 Low

CVSS3

Дефекты

CWE-256