Medium severity5.9NVD Advisory· Published Dec 15, 2022· Updated Jun 17, 2026
CVE-2022-46768
CVE-2022-46768
Description
Arbitrary file read vulnerability exists in Zabbix Web Service Report Generation, which listens on the port 10053. The service does not have proper validation for URL parameters before reading the files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:zabbix:web_service_report_generation:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:zabbix:web_service_report_generation:*:*:*:*:*:*:*:*range: >=6.0.0,<=6.0.11
- (no CPE)range: 6.0.0-6.0.11
- Zabbix/Zabbix agent 2 (MSI packages)v5Range: 6.0.12rc1
Patches
Vulnerability mechanics
References
1- support.zabbix.com/browse/ZBX-22087nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.