VYPR

rpm package

opensuse/zabbix&distro=openSUSE Leap 15.4

pkg:rpm/opensuse/zabbix&distro=openSUSE%20Leap%2015.4

Vulnerabilities (2)

  • CVE-2023-32727Dec 18, 2023
    affected < 4.0.50-bp154.2.9.1fixed 4.0.50-bp154.2.9.1

    An attacker who has the privilege to configure Zabbix items can use function icmpping() with additional malicious command inside it to execute arbitrary code on the current Zabbix server.

  • CVE-2023-29454Jul 13, 2023
    affected < 4.0.47-bp155.3.3.1fixed 4.0.47-bp155.3.3.1

    Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the pa