Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-27237

Опубликовано: 03 окт. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий

Описание

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

РелизСтатусПримечание
devel

not-affected

esm-apps/bionic

not-affected

esm-apps/focal

not-affected

esm-apps/jammy

not-affected

esm-apps/xenial

not-affected

esm-infra-legacy/trusty

not-affected

jammy

not-affected

noble

DNE

plucky

not-affected

upstream

not-affected

debian: Only affects Zabbix Agent and Agent2 on Windows

Показывать по

EPSS

Процентиль: 1%
0.00012
Низкий

Связанные уязвимости

nvd
4 месяца назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

debian
4 месяца назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file ...

github
4 месяца назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

CVSS3: 7.8
fstec
4 месяца назад

Уязвимость компонентов Zabbix Agent и Agent2 системы мониторинга ИТ-инфраструктуры Zabbix, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 1%
0.00012
Низкий