VYPR
Low severity2.7NVD Advisory· Published Aug 12, 2024· Updated Jun 17, 2026

CVE-2024-22123

CVE-2024-22123

Description

Setting SMS media allows to set GSM modem file. Later this file is used as Linux device. But due everything is a file for Linux, it is possible to set another file, e.g. log file and zabbix_server will try to communicate with it as modem. As a result, log file will be broken with AT commands and small part for log file content will be leaked to UI.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

17
  • Zabbix/Zabbix16 versions
    cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*+ 15 more
    • cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*range: >=5.0.0,<=5.0.42
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha1:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha2:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha3:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha4:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha5:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha6:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha7:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha8:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:alpha9:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:beta1:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:beta2:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:beta3:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:rc1:*:*:*:*:*:*
    • cpe:2.3:a:zabbix:zabbix:7.0.0:rc2:*:*:*:*:*:*
    • (no CPE)range: 5.0.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.