漏洞描述 【漏洞对象】Zabbix 【涉及版本】<= 1.8.4 【漏洞描述】 益用Zabbix的popup.php文件存在sql注入,可造成信息数据泄露,攻击者可利用该漏洞执行SQL指令,甚至入侵服务器
相关漏洞推荐 Zabbix /api_jsonrpc.php SQL 注入漏洞(CVE-2024-36465) 无POC 2025-09-05 | Zabbix zabbix 是一个基于 Web 界面的提供分布式系统监视以及网络监视功能的企业级的开源解决方案。Zabbix的addRelatedObjects 函数存在一个严重漏洞,只具有访问权... CVE-2022-23131: Zabbix - SAML SSO Authentication Bypass POC 2025-09-01 | Zabbix When SAML SSO authentication is enabled (non-default), session data can be modified by a malicious a... CVE-2022-23134: Zabbix Setup Configuration Authentication Bypass POC 2025-09-01 | Zabbix After the initial setup process, some steps of setup.php file are reachable not only by super-admini... CVE-2011-2523: VSFTPD 2.3.4 - Backdoor Command Execution POC 2025-09-01 | VSFTPD VSFTPD v2.3.4 had a serious backdoor vulnerability allowing attackers to execute arbitrary commands ... CVE-2011-0049: Majordomo2 - SMTP/HTTP Directory Traversal POC 2025-08-01 | Majordomo2 A directory traversal vulnerability in the _list_file_get function in lib/Majordomo.pm in Majordomo ...