Zabbix Cross-Site Scripting (CVE-2023-29452)

Related Vulnerabilities: CVE-2023-29452  

Check Point Reference: CPAI-2023-0674 Date Published: 19 Nov 2023 Severity: Medium Last Updated: Sunday 19 November, 2023 Source: Industry Reference:CVE-2023-29452
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Zabbix 6.0.0 and later, 6.0.17 and prior
Zabbix 6.4.0
Zabbix 6.4.0 Release Candidate 1
Zabbix 6.4.0 Release Candidate 2
Zabbix 6.4.0 Release Candidate 3
Zabbix 6.4.0 Release Candidate 4
Zabbix 6.4.1
Zabbix 6.4.1 Release Candidate 1
Zabbix 6.4.1 Release Candidate 2 Vulnerability Description A cross-site scripting vulnerability exists for Zabbix. Successful exploitation could result in execution of arbitrary code in the context of a victim's browser.