ZeroHour

CVE-2023-32727

CVSS 3.1
7.2 high
EPSS
<1%p57
Published
()
Modified
Description

An attacker who has the privilege to configure Zabbix items can use function icmpping() with additional malicious command inside it to execute arbitrary code on the current Zabbix server.

Vendors
zabbix
Products
zabbix server
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.