Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zabbix zabbix 1.1.5 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-1353
zabbix_agentd in ZABBIX 1.4.4 allows remote malicious users to cause a denial of service (CPU and connection consumption) via multiple vfs.file.cksum commands with a special device node such as /dev/urandom or /dev/zero.
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.1.4
1 EDB exploit
NA
CVE-2009-4500
The process_trap function in trapper/trapper.c in Zabbix Server prior to 1.6.6 allows remote malicious users to cause a denial of service (crash) via a crafted request with data that lacks an expected : (colon) separator, which triggers a NULL pointer dereference.
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1.4
Zabbix Zabbix
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.4.3
NA
CVE-2009-4502
The NET_TCP_LISTEN function in net.c in Zabbix Agent prior to 1.6.7, when running on FreeBSD or Solaris, allows remote malicious users to bypass the EnableRemoteCommands setting and execute arbitrary commands via shell metacharacters in the argument to net.tcp.listen. NOTE: this ...
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.1.2
Zabbix Zabbix
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.4.2
2 EDB exploits
NA
CVE-2009-4499
SQL injection vulnerability in the get_history_lastid function in the nodewatcher component in Zabbix Server prior to 1.6.8 allows remote malicious users to execute arbitrary SQL commands via a crafted request, possibly related to the send_history_last_id function in zabbix_serve...
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1.4
Zabbix Zabbix
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.4.6
1 EDB exploit
NA
CVE-2009-4501
The zbx_get_next_field function in libs/zbxcommon/str.c in Zabbix Server prior to 1.6.8 allows remote malicious users to cause a denial of service (crash) via a request that lacks expected separators, which triggers a NULL pointer dereference, as demonstrated using the Command ke...
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.1.5
Zabbix Zabbix
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.2
1 EDB exploit
NA
CVE-2009-4498
The node_process_command function in Zabbix Server prior to 1.8 allows remote malicious users to execute arbitrary commands via a crafted request.
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.7
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.3
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.4.2
Zabbix Zabbix 1.1.5
Zabbix Zabbix
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.6.8
2 EDB exploits
NA
CVE-2010-2790
Multiple cross-site scripting (XSS) vulnerabilities in the formatQuery function in frontends/php/include/classes/class.curl.php in Zabbix prior to 1.8.3rc1 allow remote malicious users to inject arbitrary web script or HTML via the (1) filter_set, (2) show_details, (3) filter_rst...
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.1
Zabbix Zabbix 1.1.2
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.5.3
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.6.5
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.3.7
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.8
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.3.1
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.6.2
Zabbix Zabbix 1.7
NA
CVE-2010-5049
SQL injection vulnerability in events.php in Zabbix 1.8.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the nav_time parameter.
Zabbix Zabbix 1.7.2
Zabbix Zabbix 1.1
Zabbix Zabbix 1.6.7
Zabbix Zabbix 1.6.6
Zabbix Zabbix 1.3.2
Zabbix Zabbix 1.3.3
Zabbix Zabbix 1.7
Zabbix Zabbix 1.4.3
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.5.1
Zabbix Zabbix 1.5
Zabbix Zabbix 1.6.4
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.7.3
Zabbix Zabbix 1.1.1
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.3.8
Zabbix Zabbix 1.6.2
NA
CVE-2011-4615
Multiple cross-site scripting (XSS) vulnerabilities in Zabbix prior to 1.8.10 allow remote malicious users to inject arbitrary web script or HTML via the gname parameter (aka host groups name) to (1) hostgroups.php and (2) usergrps.php, the update action to (3) hosts.php and (4) ...
Zabbix Zabbix
Zabbix Zabbix 1.8.10
Zabbix Zabbix 1.8.7
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.8.2
Zabbix Zabbix 1.6.9
Zabbix Zabbix 1.6.8
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.6
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.4.4
Zabbix Zabbix 1.3.5
Zabbix Zabbix 1.3.4
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1.4
Zabbix Zabbix 1.1
Zabbix Zabbix 1.8.9
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.7.4
NA
CVE-2011-5027
Cross-site scripting (XSS) vulnerability in ZABBIX prior to 1.8.10 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors related to the profiler.
Zabbix Zabbix
Zabbix Zabbix 1.8.8
Zabbix Zabbix 1.8.5
Zabbix Zabbix 1.8.4
Zabbix Zabbix 1.8.3
Zabbix Zabbix 1.7.1
Zabbix Zabbix 1.7
Zabbix Zabbix 1.6.3
Zabbix Zabbix 1.6.2
Zabbix Zabbix 1.6.1
Zabbix Zabbix 1.4.6
Zabbix Zabbix 1.4.5
Zabbix Zabbix 1.3.7
Zabbix Zabbix 1.3.6
Zabbix Zabbix 1.1.6
Zabbix Zabbix 1.1.5
Zabbix Zabbix 1.1
Zabbix Zabbix 1.8.9
Zabbix Zabbix 1.8.6
Zabbix Zabbix 1.8
Zabbix Zabbix 1.7.4
Zabbix Zabbix 1.6.7
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »