Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Zabbix 2.0.5 allows remote authenticated users to discover the LDAP bind password by leveraging management-console access and reading the ldap_bind_password value in the HTML source code.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Zabbix 信息泄露漏洞
Vulnerability Description
Zabbix是拉脱维亚Zabbix SIA公司的一套开源的监控系统。该系统可监视各种网络参数,并提供通知机制让系统管理员快速定位、解决存在的各种问题。 Zabbix 2.0.5版本中存在漏洞。远程经过授权的攻击者可借助管理控制台的访问权限并读取HTML源代码中的ldap_bind_password值,利用该漏洞发现LDAP绑定密码。
CVSS Information
N/A
Vulnerability Type
N/A