Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Oleksii Zagorskyi

#36262de 53,635
7.5CVSS total
Vulnerabilidades · 1
PT-2012-4709
7.5
2012-08-15
Zabbix · Zabbix · CVE-2012-3435
**Name of the Vulnerable Software and Affected Versions** Zabbix versions 1.8.15rc1 and earlier Zabbix versions 2.x before 2.0.2rc1 **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `itemid` parameter in the `/frontends/php/popup bitem.php` endpoint. **Recommendations** For Zabbix versions 1.8.15rc1 and earlier, update to a version later than 1.8.15rc1. For Zabbix versions 2.x before 2.0.2rc1, update to version 2.0.2rc1 or later.