Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zabbix zabbix 1.8.4 vulnerabilities and exploits
(subscribe to this query)
755
VMScore
CVE-2011-4674
SQL injection vulnerability in popup.php in Zabbix 1.8.3 and 1.8.4, and possibly other versions prior to 1.8.9, allows remote malicious users to execute arbitrary SQL commands via the only_hostid parameter.
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.8.3
1 EDB exploit
668
VMScore
CVE-2014-3005
XML external entity (XXE) vulnerability in Zabbix 1.8.x prior to 1.8.21rc1, 2.0.x prior to 2.0.13rc1, 2.2.x prior to 2.2.5rc1, and 2.3.x prior to 2.3.2 allows remote malicious users to read arbitrary files or potentially execute arbitrary code via a crafted DTD in an XML request.
Zabbix Zabbix 2.2.1
Zabbix Zabbix 2.2.3
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.7
Zabbix Zabbix 2.0.12
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.8.10
Zabbix Zabbix 1.8.17
Zabbix Zabbix 1.8.19
Zabbix Zabbix 2.3.0
Zabbix Zabbix 2.3.1
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.0.8
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.10
Zabbix Zabbix 2.0.11
Zabbix Zabbix 1.8.12
Zabbix Zabbix 1.8.13
Zabbix Zabbix 1.8.14
Zabbix Zabbix 1.8.15
Zabbix Zabbix 2.0.0
445
VMScore
CVE-2011-3265
popup.php in Zabbix prior to 1.8.7 allows remote malicious users to read the contents of arbitrary database tables via a modified srctbl parameter.
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.1
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.3.6
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.5.4
Zabbix Zabbix 1.6.9
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.7
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.3.7
383
VMScore
CVE-2011-5027
Cross-site scripting (XSS) vulnerability in ZABBIX prior to 1.8.10 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors related to the profiler.
Zabbix Zabbix
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.7
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.6.2
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.3.7
Zabbix Zabbix 1.3.6
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1
Zabbix Zabbix 1.8.9
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.8
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.6.7
383
VMScore
CVE-2011-4615
Multiple cross-site scripting (XSS) vulnerabilities in Zabbix prior to 1.8.10 allow remote malicious users to inject arbitrary web script or HTML via the gname parameter (aka host groups name) to (1) hostgroups.php and (2) usergrps.php, the update action to (3) hosts.php and (4) ...
Zabbix Zabbix
Zabbix Zabbix 1.8.10
Zabbix Zabbix 1.8.7
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.6.9
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.6
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1
Zabbix Zabbix 1.8.9
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.7.4
445
VMScore
CVE-2011-3264
Zabbix prior to 1.8.6 allows remote malicious users to obtain sensitive information via an invalid srcfld2 parameter to popup.php, which reveals the installation path in an error message.
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.1
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.3
Zabbix Zabbix 1.3.1
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.8
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.3.8
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.2
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.7
383
VMScore
CVE-2011-2904
Cross-site scripting (XSS) vulnerability in acknow.php in Zabbix prior to 1.8.6 allows remote malicious users to inject arbitrary web script or HTML via the backurl parameter.
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.1
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.5.2
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.6.4
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.7
Zabbix Zabbix 1.4.4
445
VMScore
CVE-2011-3263
zabbix_agentd in Zabbix prior to 1.8.6 and 1.9.x prior to 1.9.4 allows context-dependent malicious users to cause a denial of service (CPU consumption) by executing the vfs.file.cksum command for a special device, as demonstrated by the /dev/urandom device.
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.1
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.1.7
Zabbix Zabbix 1.3
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.8
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.3
Zabbix Zabbix
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.1.3
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30051
remote
CVE-2024-27954
CVE-2023-51483
CVE-2023-47782
SSRF
CVE-2024-24715
CVE-2023-52424
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started