PT-2024-10427 · Zabbix+3 · Zabbix+3

Jayateerthag

·

Published

2024-08-09

·

Updated

2024-12-04

·

CVE-2024-22114

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Zabbix (affected versions not specified)
Description The issue is related to incorrect permission storage in the Zabbix monitoring system. This allows an unauthorized user to access and view host count and other statistics through the System Information Widget in the Global View Dashboard.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Preservation of Permissions

Weakness Enumeration

Related Identifiers

ALT-PU-2024-11571
ALT-PU-2024-11575
ALT-PU-2024-15832
BDU:2025-00959
CVE-2024-22114
DLA-3909-1
OPENSUSE-SU-2024:0384-1

Affected Products

Alt Linux
Astra Linux
Debian
Zabbix