Логотип exploitDog
bind:CVE-2024-22120
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-22120

Количество 6

Количество 6

ubuntu логотип

CVE-2024-22120

почти 2 года назад

Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.

CVSS3: 9.1
EPSS: Критический
nvd логотип

CVE-2024-22120

почти 2 года назад

Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.

CVSS3: 9.1
EPSS: Критический
debian логотип

CVE-2024-22120

почти 2 года назад

Zabbix server can perform command execution for configured scripts. Af ...

CVSS3: 9.1
EPSS: Критический
github логотип

GHSA-625f-58w6-wj9f

почти 2 года назад

Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.

CVSS3: 9.1
EPSS: Критический
fstec логотип

BDU:2024-03942

почти 2 года назад

Уязвимость сервера универсальной системы мониторинга Zabbix Workstation, связанная с ошибками при обработке входных данных, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.1
EPSS: Критический
redos логотип

ROS-20240611-05

почти 2 года назад

Уязвимость zabbix

CVSS3: 9.1
EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-22120

Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.

CVSS3: 9.1
92%
Критический
почти 2 года назад
nvd логотип
CVE-2024-22120

Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.

CVSS3: 9.1
92%
Критический
почти 2 года назад
debian логотип
CVE-2024-22120

Zabbix server can perform command execution for configured scripts. Af ...

CVSS3: 9.1
92%
Критический
почти 2 года назад
github логотип
GHSA-625f-58w6-wj9f

Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.

CVSS3: 9.1
92%
Критический
почти 2 года назад
fstec логотип
BDU:2024-03942

Уязвимость сервера универсальной системы мониторинга Zabbix Workstation, связанная с ошибками при обработке входных данных, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.1
92%
Критический
почти 2 года назад
redos логотип
ROS-20240611-05

Уязвимость zabbix

CVSS3: 9.1
92%
Критический
почти 2 года назад

Уязвимостей на страницу