Zabbix Agent 3.0.1 mysql.size shell命令注入

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

CVE-2016-4338: Zabbix Agent 3.0.1 mysql.size shell command injection Affected products ================= At least Zabbix Agent 1:3.0.1-1+wheezy from http://repo.zabbix.com/zabbix/3.0/debian is vulnerable. Other versions were not tested. Background ========== "Zabbix agent is deployed on a monitoring target to actively monitor local resources and applications (hard drives, memory, processor statistics etc). The agent gathers operational information locally and reports data to Zabbix server for further processing. In case of failures (such as a hard disk running full or a crashed service process), Zabbix server can actively alert the administrators of the particular machine that reported the failure. Zabbix agents are extremely efficient because of use of native system calls for gathering statistical information." -- https://www.zabbix.com/documentation/3.0/manual/concepts/agent Description =========== Zabbix agent listens on port 10050 for connections from the Zabbix server. The...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息