Описание
Zabbix Agent 2 Docker plugin does not properly sanitize the 'docker.container_info' parameters when forwarding them to the Docker daemon. An attacker capable of invoking Agent 2 can read arbitrary files from running Docker containers by injecting them via the Docker archive API.
EPSS
Процентиль: 18%
0.00057
Низкий
Дефекты
CWE-88
Связанные уязвимости
debian
9 дней назад
Zabbix Agent 2 Docker plugin does not properly sanitize the 'docker.co ...
github
9 дней назад
Zabbix Agent 2 Docker plugin does not properly sanitize the 'docker.container_info' parameters when forwarding them to the Docker daemon. An attacker capable of invoking Agent 2 can read arbitrary files from running Docker containers by injecting them via the Docker archive API.
EPSS
Процентиль: 18%
0.00057
Низкий
Дефекты
CWE-88