Количество 8
Количество 8
BDU:2026-05709
Уязвимость универсальной системы мониторинга Zabbix, связанная с недостатками механизма авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
ROS-20260401-73-0049
Уязвимость zabbix7-lts
ROS-20260401-73-0048
Уязвимость zabbix-lts
CVE-2026-23925
An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User role is normally not sufficient to create and edit templates/hosts even with write permissions.
CVE-2026-23925
An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User role is normally not sufficient to create and edit templates/hosts even with write permissions.
CVE-2026-23925
An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User role is normally not sufficient to create and edit templates/hosts even with write permissions.
CVE-2026-23925
An authenticated Zabbix user (User role) with template/host write perm ...
GHSA-cv64-6j2c-f8cg
An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User role is normally not sufficient to create and edit templates/hosts even with write permissions.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-05709 Уязвимость универсальной системы мониторинга Zabbix, связанная с недостатками механизма авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 6.4 | 0% Низкий | 5 месяцев назад | |
ROS-20260401-73-0049 Уязвимость zabbix7-lts | CVSS3: 6.4 | 0% Низкий | 4 месяца назад | |
ROS-20260401-73-0048 Уязвимость zabbix-lts | CVSS3: 6.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-23925 An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User role is normally not sufficient to create and edit templates/hosts even with write permissions. | CVSS3: 8.1 | 0% Низкий | 5 месяцев назад | |
CVE-2026-23925 An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User role is normally not sufficient to create and edit templates/hosts even with write permissions. | CVSS3: 7.6 | 0% Низкий | 5 месяцев назад | |
CVE-2026-23925 An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User role is normally not sufficient to create and edit templates/hosts even with write permissions. | CVSS3: 8.1 | 0% Низкий | 5 месяцев назад | |
CVE-2026-23925 An authenticated Zabbix user (User role) with template/host write perm ... | CVSS3: 8.1 | 0% Низкий | 5 месяцев назад | |
GHSA-cv64-6j2c-f8cg An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User role is normally not sufficient to create and edit templates/hosts even with write permissions. | CVSS3: 8.1 | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу