Beveiligingsadvies

CVE-2017-2825

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-04-20 21:00:00
Laatst bijgewerkt 2024-09-16 23:05:42
Toegewezen door talos
CVSS-score geen score
Status PUBLISHED

Beschrijving

In the trapper functionality of Zabbix Server 2.4.x, specifically crafted trapper packets can pass database logic checks, resulting in database writes. An attacker can set up a Man-in-the-Middle server to alter trapper requests made between an active Zabbix proxy and Server to trigger this vulnerability.