Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The API in Zabbix before 1.8.20rc1, 2.0.x before 2.0.11rc1, and 2.2.x before 2.2.2rc1 allows remote authenticated users to spoof arbitrary users via the user name in a user.login request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Zabbix SIA Zabbix 授权问题漏洞
Vulnerability Description
Zabbix是拉脱维亚Zabbix SIA公司的一套开源的监控系统。该系统可监视各种网络参数,并提供通知机制让系统管理员快速定位、解决存在的各种问题。 Zabbix SIA Zabbix的API中存在安全漏洞。远程攻击者可借助user.login请求中的用户名利用该漏洞冒充任意用户。以下版本受到影响:Zabbix 1.8.19及之前的版本,2.0.11rc1之前的2.0.x版本,2.2.2rc1之前的2.2.x版本。
CVSS Information
N/A
Vulnerability Type
N/A