Zabbix Frontend是美国Zabbix公司的一个监控软件前端工具。 Zabbix Frontend 存在安全漏洞,经过身份验证的攻击者可以创建带有反射跨站脚本攻击载荷的链接以执行操作页面,并将其发送给其他用户。恶意代码可以访问与网页其余部分相同的所有对象,并且可以对显示给受害者的页面内容进行任意修改。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-24917 | 3.7 LOW | Reflected XSS in service configuration window of Zabbix Frontend |
| CVE-2022-24918 | 3.7 LOW | Reflected XSS in item configuration window of Zabbix Frontend |
| CVE-2022-24919 | 3.7 LOW | Reflected XSS in graph configuration window of Zabbix Frontend |
No comments yet