Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-22123

Опубликовано: 12 авг. 2024
Источник: ubuntu
Приоритет: medium
CVSS3: 2.7

Описание

Setting SMS media allows to set GSM modem file. Later this file is used as Linux device. But due everything is a file for Linux, it is possible to set another file, e.g. log file and zabbix_server will try to communicate with it as modem. As a result, log file will be broken with AT commands and small part for log file content will be leaked to UI.

РелизСтатусПримечание
devel

needs-triage

esm-apps/bionic

needs-triage

esm-apps/focal

needs-triage

esm-apps/jammy

needs-triage

esm-apps/xenial

needs-triage

esm-infra-legacy/trusty

needs-triage

focal

ignored

end of standard support, was needs-triage
jammy

needs-triage

noble

DNE

oracular

ignored

end of life, was needs-triage

Показывать по

2.7 Low

CVSS3

Связанные уязвимости

CVSS3: 2.7
nvd
около 1 года назад

Setting SMS media allows to set GSM modem file. Later this file is used as Linux device. But due everything is a file for Linux, it is possible to set another file, e.g. log file and zabbix_server will try to communicate with it as modem. As a result, log file will be broken with AT commands and small part for log file content will be leaked to UI.

CVSS3: 2.7
debian
около 1 года назад

Setting SMS media allows to set GSM modem file. Later this file is use ...

CVSS3: 2.7
github
около 1 года назад

Setting SMS media allows to set GSM modem file. Later this file is used as Linux device. But due everything is a file for Linux, it is possible to set another file, e.g. log file and zabbix_server will try to communicate with it as modem. As a result, log file will be broken with AT commands and small part for log file content will be leaked to UI.

CVSS3: 2.7
fstec
около 1 года назад

Уязвимость универсальной системы мониторинга Zabbix, связанная с неправильным контролем генерации кода, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.1
redos
около 1 года назад

Множественные уязвимости zabbix

2.7 Low

CVSS3