Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zabbix zabbix 2.0.8 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2013-7484
Zabbix prior to 5.0 represents passwords in the users table with unsalted MD5.
Zabbix Zabbix 2.0.8
Zabbix Zabbix 4.4.0
NA
CVE-2014-9450
Multiple SQL injection vulnerabilities in chart_bar.php in the frontend in Zabbix prior to 1.8.22, 2.0.x prior to 2.0.14, and 2.2.x prior to 2.2.8 allow remote malicious users to execute arbitrary SQL commands via the (1) itemid or (2) periods parameter.
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.2.7
Zabbix Zabbix 2.0.4
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.12
Zabbix Zabbix 2.2.3
Zabbix Zabbix 2.2.2
Zabbix Zabbix 2.0.6
Zabbix Zabbix 2.0.3
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.2.6
Zabbix Zabbix 2.0.10
Zabbix Zabbix 2.0.11
Zabbix Zabbix 2.2.4
Zabbix Zabbix 2.2.1
Zabbix Zabbix
Zabbix Zabbix 2.0.2
Zabbix Zabbix 2.2.5
Zabbix Zabbix 2.0.8
Zabbix Zabbix 2.0.13
Zabbix Zabbix 2.0.7
NA
CVE-2014-1682
The API in Zabbix prior to 1.8.20rc1, 2.0.x prior to 2.0.11rc1, and 2.2.x prior to 2.2.2rc1 allows remote authenticated users to spoof arbitrary users via the user name in a user.login request.
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.0.4
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.6
Zabbix Zabbix 2.0.3
Zabbix Zabbix 1.8.16
Zabbix Zabbix 2.2.1
Zabbix Zabbix 1.8.3
Zabbix Zabbix 2.0.10
Zabbix Zabbix 1.8.18
Zabbix Zabbix 1.8
Zabbix Zabbix 2.0.2
Zabbix Zabbix 1.8.15
Zabbix Zabbix 1.8.2
Zabbix Zabbix 2.0.8
Fedoraproject Fedora 20
Zabbix Zabbix 1.8.1
Zabbix Zabbix 2.0.7
Fedoraproject Fedora 19
NA
CVE-2014-1685
The Frontend in Zabbix prior to 1.8.20rc2, 2.0.x prior to 2.0.11rc2, and 2.2.x prior to 2.2.2rc1 allows remote "Zabbix Admin" users to modify the media of arbitrary users via unspecified vectors.
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.0.4
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.6
Zabbix Zabbix 2.0.3
Zabbix Zabbix 1.8.16
Zabbix Zabbix 2.2.1
Zabbix Zabbix 1.8.3
Zabbix Zabbix 2.0.10
Zabbix Zabbix 1.8.18
Zabbix Zabbix 1.8
Zabbix Zabbix 2.0.2
Zabbix Zabbix 1.8.15
Zabbix Zabbix 1.8.2
Zabbix Zabbix 2.0.8
Fedoraproject Fedora 20
Zabbix Zabbix 1.8.1
Zabbix Zabbix 2.0.7
Fedoraproject Fedora 19
8.1
CVSSv3
CVE-2016-4338
The mysql user parameter configuration script (userparameter_mysql.conf) in the agent in Zabbix prior to 2.0.18, 2.2.x prior to 2.2.13, and 3.0.x prior to 3.0.3, when used with a shell other than bash, allows context-dependent malicious users to execute arbitrary code or SQL comm...
Zabbix Zabbix 2.0.0
Zabbix Zabbix 2.2.2
Zabbix Zabbix 2.2.0
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.14
Zabbix Zabbix 2.0.9
Zabbix Zabbix 2.2.12
Zabbix Zabbix 3.0.2
Zabbix Zabbix 2.2.1
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.2.6
Zabbix Zabbix 2.0.11
Zabbix Zabbix 2.0.6
Zabbix Zabbix 2.2.11
Zabbix Zabbix 2.0.4
Zabbix Zabbix 2.0.15
Zabbix Zabbix 2.2.7
Zabbix Zabbix 2.0.12
Zabbix Zabbix 3.0.0
Zabbix Zabbix 2.2.4
Zabbix Zabbix 2.0.3
Zabbix Zabbix 2.2.9
1 EDB exploit
9.8
CVSSv3
CVE-2014-3005
XML external entity (XXE) vulnerability in Zabbix 1.8.x prior to 1.8.21rc1, 2.0.x prior to 2.0.13rc1, 2.2.x prior to 2.2.5rc1, and 2.3.x prior to 2.3.2 allows remote malicious users to read arbitrary files or potentially execute arbitrary code via a crafted DTD in an XML request.
Zabbix Zabbix 2.0.0
Zabbix Zabbix 1.8.5
Zabbix Zabbix 2.0.5
Zabbix Zabbix 2.0.9
Zabbix Zabbix 1.8.8
Zabbix Zabbix 2.2.0
Zabbix Zabbix 1.8.16
Zabbix Zabbix 2.0.1
Zabbix Zabbix 2.0.11
Zabbix Zabbix 2.0.6
Zabbix Zabbix 1.8.6
Zabbix Zabbix 2.0.4
Zabbix Zabbix 1.8.18
Zabbix Zabbix 1.8
Zabbix Zabbix 2.0.12
Zabbix Zabbix 2.2.4
Zabbix Zabbix 2.0.3
Zabbix Zabbix 1.8.2
Zabbix Zabbix 2.2.2
Zabbix Zabbix 1.8.9
Zabbix Zabbix 2.2.1
Zabbix Zabbix 2.0.2
9.8
CVSSv3
CVE-2013-5743
Multiple SQL injection vulnerabilities in Zabbix 1.8.x prior to 1.8.18rc1, 2.0.x prior to 2.0.9rc1, and 2.1.x prior to 2.1.7.
Zabbix Zabbix
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
IMAP
CVE-2024-36103
CVE-2024-28995
CVE-2024-37325
CVE-2024-30078
CVE-2024-30082
SQL injection
CVE-2024-30052
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started