PT-2014-4292 · Zabbix+1 · Zabbix+1
Corey Shaw
·
Published
2014-02-13
·
Updated
2014-05-09
·
CVE-2014-1685
CVSS v2.0
5.5
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Zabbix versions prior to 1.8.20rc2
Zabbix versions 2.0.x prior to 2.0.11rc2
Zabbix versions 2.2.x prior to 2.2.2rc1
Description
The issue allows remote "Zabbix Admin" users to modify the media of arbitrary users.
Recommendations
For versions prior to 1.8.20rc2, update to version 1.8.20rc2 or later.
For versions 2.0.x prior to 2.0.11rc2, update to version 2.0.11rc2 or later.
For versions 2.2.x prior to 2.2.2rc1, update to version 2.2.2rc1 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Zabbix