Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zabbix zabbix 1.8 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2013-5743
Multiple SQL injection vulnerabilities in Zabbix 1.8.x prior to 1.8.18rc1, 2.0.x prior to 2.0.9rc1, and 2.1.x prior to 2.1.7.
Zabbix Zabbix
1 EDB exploit
9.8
CVSSv3
CVE-2014-3005
XML external entity (XXE) vulnerability in Zabbix 1.8.x prior to 1.8.21rc1, 2.0.x prior to 2.0.13rc1, 2.2.x prior to 2.2.5rc1, and 2.3.x prior to 2.3.2 allows remote malicious users to read arbitrary files or potentially execute arbitrary code via a crafted DTD in an XML request.
Zabbix Zabbix 2.2.1
Zabbix Zabbix 2.2.3
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.7
Zabbix Zabbix 2.0.12
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.8.10
Zabbix Zabbix 1.8.17
Zabbix Zabbix 1.8.19
Zabbix Zabbix 2.3.0
Zabbix Zabbix 2.3.1
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.0.8
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.10
Zabbix Zabbix 2.0.11
Zabbix Zabbix 1.8.12
Zabbix Zabbix 1.8.13
Zabbix Zabbix 1.8.14
Zabbix Zabbix 1.8.15
Zabbix Zabbix 2.0.0
NA
CVE-2014-1682
The API in Zabbix prior to 1.8.20rc1, 2.0.x prior to 2.0.11rc1, and 2.2.x prior to 2.2.2rc1 allows remote authenticated users to spoof arbitrary users via the user name in a user.login request.
Zabbix Zabbix 2.0.2
Zabbix Zabbix 2.0.3
Zabbix Zabbix 2.0.7
Zabbix Zabbix 2.0.8
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.2.1
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.5
Zabbix Zabbix 1.8
Zabbix Zabbix 1.8.3
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.10
Zabbix Zabbix 2.0.4
Fedoraproject Fedora 19
Fedoraproject Fedora 20
Zabbix Zabbix 2.0.6
Zabbix Zabbix 1.8.15
Zabbix Zabbix 1.8.16
Zabbix Zabbix 1.8.18
Zabbix Zabbix
Zabbix Zabbix 1.8.1
NA
CVE-2014-1685
The Frontend in Zabbix prior to 1.8.20rc2, 2.0.x prior to 2.0.11rc2, and 2.2.x prior to 2.2.2rc1 allows remote "Zabbix Admin" users to modify the media of arbitrary users via unspecified vectors.
Zabbix Zabbix 2.0.2
Zabbix Zabbix 2.0.3
Zabbix Zabbix 2.2.1
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.0.4
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.6
Zabbix Zabbix 1.8
Zabbix Zabbix 2.0.7
Zabbix Zabbix 2.0.8
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.0.1
Zabbix Zabbix
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.8.3
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.10
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.8.16
Fedoraproject Fedora 19
Zabbix Zabbix 1.8.15
Zabbix Zabbix 1.8.18
NA
CVE-2012-6086
libs/zbxmedia/eztexting.c in Zabbix 1.8.x prior to 1.8.18rc1, 2.0.x prior to 2.0.8rc1, and 2.1.x prior to 2.1.2 does not properly set the CURLOPT_SSL_VERIFYHOST option for libcurl, which allows man-in-the-middle malicious users to spoof SSL servers via an arbitrary valid certific...
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.6
Zabbix Zabbix 2.1.0
Zabbix Zabbix 2.1.1
Zabbix Zabbix 2.0.5
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.8.10
Zabbix Zabbix 2.0.3
Zabbix Zabbix 1.8.16
Zabbix Zabbix 2.0.2
Zabbix Zabbix 2.0.4
Zabbix Zabbix 1.8.15
NA
CVE-2012-3435
SQL injection vulnerability in frontends/php/popup_bitem.php in Zabbix 1.8.15rc1 and previous versions, and 2.x prior to 2.0.2rc1, allows remote malicious users to execute arbitrary SQL commands via the itemid parameter.
Zabbix Zabbix
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.1
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.1.7
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.5.2
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.3
Zabbix Zabbix 1.3.1
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.8
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.3.8
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.2
1 EDB exploit
NA
CVE-2011-4615
Multiple cross-site scripting (XSS) vulnerabilities in Zabbix prior to 1.8.10 allow remote malicious users to inject arbitrary web script or HTML via the gname parameter (aka host groups name) to (1) hostgroups.php and (2) usergrps.php, the update action to (3) hosts.php and (4) ...
Zabbix Zabbix
Zabbix Zabbix 1.8.10
Zabbix Zabbix 1.8.7
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.6.9
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.6
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1
Zabbix Zabbix 1.8.9
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.7.4
NA
CVE-2011-5027
Cross-site scripting (XSS) vulnerability in ZABBIX prior to 1.8.10 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors related to the profiler.
Zabbix Zabbix
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.7
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.6.2
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.3.7
Zabbix Zabbix 1.3.6
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1
Zabbix Zabbix 1.8.9
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.8
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.6.7
NA
CVE-2010-5049
SQL injection vulnerability in events.php in Zabbix 1.8.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the nav_time parameter.
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.1
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.7
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.4
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.3.8
Zabbix Zabbix 1.6.2
NA
CVE-2011-3264
Zabbix prior to 1.8.6 allows remote malicious users to obtain sensitive information via an invalid srcfld2 parameter to popup.php, which reveals the installation path in an error message.
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.1
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.3
Zabbix Zabbix 1.3.1
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.8
Zabbix Zabbix 1.8.1
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.3.8
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.2
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.7
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-35229
privilege escalation
local users
CVE-2024-5405
CVE-2024-27842
CVE-2024-5274
CVE-2024-5378
CVE-2024-34152
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »