References https://www.h3c.com/cn/d_202207/1644531_30003_0.htm https://www.cnblogs.com/wavesky/p/16366406.html https://github.com/Threekiii/Vulnerability-Wiki/blob/master/docs-base/docs/middleware/Zabbix-SAML%E8%BA%AB%E4%BB%BD%E7%BB%95%E8%BF%87%E6%BC%8F%E6%B4%9E-CVE-2022-23131.md https://zone.huoxian.cn/d/936-cve-2022-23131-zabbix https://developer.aliyun.com/article/918185 https://stack.chaitin.com/vuldb/detail/20d16d0f-4963-4c76-aa26-1ce5189a1ce9 https://y4er.com/posts/cve-2022-23131-zabbix-web-frontend-bypassing-the-saml-sso-authentication/ https://blog.csdn.net/weixin_50464560/article/details/123154050 https://blog.hackall.cn/pentestvuln/1035.html https://github.com/Mr-xn/cve-2022-23131/blob/main/zabbix_session_exp.py https://nvd.nist.gov/vuln/detail/cve-2022-23131 https://blog.zabbix.com/zabbix-security-advisories-regarding-cve-2022-23131-and-cve-2022-23134/19720/ https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2022-23131 https://www.covertswarm.com/post/authentication-bypass-instance-takeover-vulnerability-via-zabbix-frontend-cve-2022-23131 https://www.rapid7.com/db/vulnerabilities/zabbix-cve-2022-23131/ https://www.sentinelone.com/vulnerability-database/cve-2022-23131/ https://www.openbugbounty.org/blog/zabbix-saml-sso-authentication-bypass/ https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-23131 https://support.zabbix.com/browse/ZBX-20350
Related VulnerabilitiesZabbix /api_jsonrpc.php SQL 注入漏洞(CVE-2024-36465)PoCCVE-2024-22120: Zabbix Server - Time-Based Blind SQL injectionPoCCVE-2016-10134: Zabbix - SQL InjectionPoCCVE-2019-17382: Zabbix <=4.4 - Authentication BypassPoCCVE-2022-23131: Zabbix - SAML SSO Authentication BypassPoCCVE-2022-23134: Zabbix Setup Configuration Authentication BypassPoCCVE-2022-26148: Grafana & Zabbix Integration - Credentials DisclosurePoCCVE-2016-10134: Zabbix SQL Injection VulnerabilityPoCzabbix-default-password: Zabbix Default Password