Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zabbix zabbix 1.1.5 vulnerabilities and exploits
(subscribe to this query)
940
VMScore
CVE-2009-4502
The NET_TCP_LISTEN function in net.c in Zabbix Agent prior to 1.6.7, when running on FreeBSD or Solaris, allows remote malicious users to bypass the EnableRemoteCommands setting and execute arbitrary commands via shell metacharacters in the argument to net.tcp.listen. NOTE: this ...
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.1.2
Zabbix Zabbix
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.4.2
2 EDB exploits
890
VMScore
CVE-2007-0640
Buffer overflow in ZABBIX prior to 1.1.5 has unknown impact and attack vectors related to "SNMP IP addresses."
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.1.3
Zabbix Zabbix
755
VMScore
CVE-2012-3435
SQL injection vulnerability in frontends/php/popup_bitem.php in Zabbix 1.8.15rc1 and previous versions, and 2.x prior to 2.0.2rc1, allows remote malicious users to execute arbitrary SQL commands via the itemid parameter.
Zabbix Zabbix
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.1
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.1.7
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.5.2
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.3
Zabbix Zabbix 1.3.1
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.8
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.3.8
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.2
1 EDB exploit
755
VMScore
CVE-2009-4499
SQL injection vulnerability in the get_history_lastid function in the nodewatcher component in Zabbix Server prior to 1.6.8 allows remote malicious users to execute arbitrary SQL commands via a crafted request, possibly related to the send_history_last_id function in zabbix_serve...
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1.4
Zabbix Zabbix
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.4.6
1 EDB exploit
690
VMScore
CVE-2009-4498
The node_process_command function in Zabbix Server prior to 1.8 allows remote malicious users to execute arbitrary commands via a crafted request.
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.7
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.1.5
Zabbix Zabbix
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.6.8
2 EDB exploits
668
VMScore
CVE-2010-5049
SQL injection vulnerability in events.php in Zabbix 1.8.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the nav_time parameter.
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.1
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.7
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.4
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.3.8
Zabbix Zabbix 1.6.2
505
VMScore
CVE-2009-4501
The zbx_get_next_field function in libs/zbxcommon/str.c in Zabbix Server prior to 1.6.8 allows remote malicious users to cause a denial of service (crash) via a request that lacks expected separators, which triggers a NULL pointer dereference, as demonstrated using the Command ke...
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.1.5
Zabbix Zabbix
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.2
1 EDB exploit
445
VMScore
CVE-2011-3263
zabbix_agentd in Zabbix prior to 1.8.6 and 1.9.x prior to 1.9.4 allows context-dependent malicious users to cause a denial of service (CPU consumption) by executing the vfs.file.cksum command for a special device, as demonstrated by the /dev/urandom device.
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.1
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.1.7
Zabbix Zabbix 1.3
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.8
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.3
Zabbix Zabbix
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.1.3
445
VMScore
CVE-2011-3264
Zabbix prior to 1.8.6 allows remote malicious users to obtain sensitive information via an invalid srcfld2 parameter to popup.php, which reveals the installation path in an error message.
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.1
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.3
Zabbix Zabbix 1.3.1
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.8
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.3.8
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.2
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.7
445
VMScore
CVE-2011-3265
popup.php in Zabbix prior to 1.8.7 allows remote malicious users to read the contents of arbitrary database tables via a modified srctbl parameter.
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.1
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.3.6
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.5.4
Zabbix Zabbix 1.6.9
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.7
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.3.7
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4761
command injection
CVE-2024-3676
IDOR
CVE-2024-30039
CVE-2024-32113
CVE-2024-30049
CVE-2024-4776
SQL injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »