Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zabbix zabbix 1.8.1 vulnerabilities and exploits
(subscribe to this query)
668
VMScore
CVE-2010-1277
SQL injection vulnerability in the user.authenticate method in the API in Zabbix 1.8 prior to 1.8.2 allows remote malicious users to execute arbitrary SQL commands via the user parameter in JSON data to api_jsonrpc.php.
Zabbix Zabbix 1.8
Zabbix Zabbix 1.8.1
383
VMScore
CVE-2012-6086
libs/zbxmedia/eztexting.c in Zabbix 1.8.x prior to 1.8.18rc1, 2.0.x prior to 2.0.8rc1, and 2.1.x prior to 2.1.2 does not properly set the CURLOPT_SSL_VERIFYHOST option for libcurl, which allows man-in-the-middle malicious users to spoof SSL servers via an arbitrary valid certific...
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.0.5
Zabbix Zabbix 1.8.10
Zabbix Zabbix 1.8.16
Zabbix Zabbix 2.0.6
Zabbix Zabbix 2.0.4
Zabbix Zabbix 2.1.0
Zabbix Zabbix 2.0.3
Zabbix Zabbix 1.8.15
Zabbix Zabbix 2.0.2
Zabbix Zabbix 1.8.1
Zabbix Zabbix 2.1.1
490
VMScore
CVE-2014-1685
The Frontend in Zabbix prior to 1.8.20rc2, 2.0.x prior to 2.0.11rc2, and 2.2.x prior to 2.2.2rc1 allows remote "Zabbix Admin" users to modify the media of arbitrary users via unspecified vectors.
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.0.4
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.6
Zabbix Zabbix 2.0.3
Zabbix Zabbix 1.8.16
Zabbix Zabbix 2.2.1
Zabbix Zabbix 1.8.3
Zabbix Zabbix 2.0.10
Zabbix Zabbix 1.8.18
Zabbix Zabbix 1.8
Zabbix Zabbix 2.0.2
Zabbix Zabbix 1.8.15
Zabbix Zabbix 1.8.2
Zabbix Zabbix 2.0.8
Fedoraproject Fedora 20
Zabbix Zabbix 1.8.1
Zabbix Zabbix 2.0.7
Fedoraproject Fedora 19
356
VMScore
CVE-2014-1682
The API in Zabbix prior to 1.8.20rc1, 2.0.x prior to 2.0.11rc1, and 2.2.x prior to 2.2.2rc1 allows remote authenticated users to spoof arbitrary users via the user name in a user.login request.
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.0.4
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.6
Zabbix Zabbix 2.0.3
Zabbix Zabbix 1.8.16
Zabbix Zabbix 2.2.1
Zabbix Zabbix 1.8.3
Zabbix Zabbix 2.0.10
Zabbix Zabbix 1.8.18
Zabbix Zabbix 1.8
Zabbix Zabbix 2.0.2
Zabbix Zabbix 1.8.15
Zabbix Zabbix 1.8.2
Zabbix Zabbix 2.0.8
Fedoraproject Fedora 20
Zabbix Zabbix 1.8.1
Zabbix Zabbix 2.0.7
Fedoraproject Fedora 19
383
VMScore
CVE-2010-2790
Multiple cross-site scripting (XSS) vulnerabilities in the formatQuery function in frontends/php/include/classes/class.curl.php in Zabbix prior to 1.8.3rc1 allow remote malicious users to inject arbitrary web script or HTML via the (1) filter_set, (2) show_details, (3) filter_rst...
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.1
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.3.7
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.8
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.3.1
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.6.2
Zabbix Zabbix 1.7
668
VMScore
CVE-2014-3005
XML external entity (XXE) vulnerability in Zabbix 1.8.x prior to 1.8.21rc1, 2.0.x prior to 2.0.13rc1, 2.2.x prior to 2.2.5rc1, and 2.3.x prior to 2.3.2 allows remote malicious users to read arbitrary files or potentially execute arbitrary code via a crafted DTD in an XML request.
Zabbix Zabbix 2.0.0
Zabbix Zabbix 1.8.5
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.9
Zabbix Zabbix 1.8.8
Zabbix Zabbix 2.2.0
Zabbix Zabbix 1.8.16
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.11
Zabbix Zabbix 2.0.6
Zabbix Zabbix 1.8.6
Zabbix Zabbix 2.0.4
Zabbix Zabbix 1.8.18
Zabbix Zabbix 1.8
Zabbix Zabbix 2.0.12
Zabbix Zabbix 2.2.4
Zabbix Zabbix 2.0.3
Zabbix Zabbix 1.8.2
Zabbix Zabbix 2.2.2
Zabbix Zabbix 1.8.9
Zabbix Zabbix 2.2.1
Zabbix Zabbix 2.0.2
445
VMScore
CVE-2011-3265
popup.php in Zabbix prior to 1.8.7 allows remote malicious users to read the contents of arbitrary database tables via a modified srctbl parameter.
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.1
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.3.7
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.8
Zabbix Zabbix 1.6.3
383
VMScore
CVE-2011-4615
Multiple cross-site scripting (XSS) vulnerabilities in Zabbix prior to 1.8.10 allow remote malicious users to inject arbitrary web script or HTML via the gname parameter (aka host groups name) to (1) hostgroups.php and (2) usergrps.php, the update action to (3) hosts.php and (4) ...
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.1
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.4
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.8.7
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.8.9
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.5.1
383
VMScore
CVE-2011-5027
Cross-site scripting (XSS) vulnerability in ZABBIX prior to 1.8.10 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors related to the profiler.
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.1
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.4
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.8.7
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.8.9
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.5.1
383
VMScore
CVE-2011-2904
Cross-site scripting (XSS) vulnerability in acknow.php in Zabbix prior to 1.8.6 allows remote malicious users to inject arbitrary web script or HTML via the backurl parameter.
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.1
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.3.7
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.8
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.3.1
Zabbix Zabbix 1.3.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
server-side request forgery
CVE-2024-30067
CVE-2024-5553
CVE-2024-30095
IDOR
CVE-2024-35252
CVE-2024-23692
CVE-2024-27801
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »