Zabbix是Zabbix公司的一套开源的监控系统。该系统支持网络监控、服务器监控、云监控和应用监控等。 Zabbix存在安全漏洞,该漏洞源于用户可通过Zabbix API搜索用户组中其他用户并选择无访问权限的字段,可能导致数据挖掘。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-27237 | DLL injection in Zabbix Agent and Agent 2 via OpenSSL configuration | |
| CVE-2025-27231 | LDAP 'Bind password' field value can be leaked by a Zabbix Super Admin | |
| CVE-2025-49641 | Insufficient permission check for the problem.view.refresh action |
No comments yet