CVE-2024-36466
28.11.2024, 08:15
A bug in the code allows an attacker to sign a forged zbx_session cookie, which then allows them to sign in with admin permissions.Enginsight
Vendor | Product | Version |
---|---|---|
zabbix | zabbix | 6.0.0 ≤ 𝑥 < 6.0.32 |
zabbix | zabbix | 6.4.0 ≤ 𝑥 < 6.4.17 |
zabbix | zabbix | 7.0.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration