Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-27237

Опубликовано: 03 окт. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий

Описание

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

РелизСтатусПримечание
devel

not-affected

esm-apps-legacy/xenial

not-affected

esm-apps/bionic

not-affected

esm-apps/focal

not-affected

esm-apps/jammy

not-affected

esm-apps/xenial

not-affected

esm-infra-legacy/trusty

not-affected

jammy

not-affected

noble

DNE

plucky

not-affected

Показывать по

EPSS

Процентиль: 25%
0.00325
Низкий

Связанные уязвимости

nvd
11 месяцев назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

debian
11 месяцев назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file ...

github
11 месяцев назад

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.

CVSS3: 7.8
fstec
11 месяцев назад

Уязвимость компонентов Zabbix Agent и Agent2 системы мониторинга ИТ-инфраструктуры Zabbix, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 25%
0.00325
Низкий