Zabbix Frontend是美国Zabbix公司的一个监控软件前端工具。 Zabbix Frontend 4.0.0至4.0.38版本, 5.0.0至5.0.20版本, 5.4.0至5.4.10版本, 6.0版本存在安全漏洞,该漏洞允许经过身份验证的攻击者为图形页面创建一个带有反射 Javascript 代码的链接,并将其发送给其他受害者。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-24349 | 4.6 MEDIUM | Reflected XSS in action configuration window of Zabbix Frontend |
| CVE-2022-24917 | 3.7 LOW | Reflected XSS in service configuration window of Zabbix Frontend |
| CVE-2022-24918 | 3.7 LOW | Reflected XSS in item configuration window of Zabbix Frontend |
No comments yet