CVE-2007-6210: Low severity Zabbix Zabbix Agentd vulnerability
Published Dec 4, 2007
·Updated
zabbixagentd 1.1.4 in ZABBIX before 1.4.3 runs "UserParameter" scripts with gid 0, which might allow local users to gain privileges.
Affected Software
1 affected component
Zabbix Zabbix Agentd=1.1.4
Remediation
Patch Available
Event History
Dec 4, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-6210?
CVE-2007-6210 has a moderate severity rating due to the potential for local privilege escalation.
2
How do I fix CVE-2007-6210?
To fix CVE-2007-6210, upgrade from ZABBIX agentd version 1.1.4 to a version that is 1.4.3 or higher.
3
What systems are affected by CVE-2007-6210?
CVE-2007-6210 specifically affects Zabbix agentd version 1.1.4.
4
What kind of attack does CVE-2007-6210 allow?
CVE-2007-6210 allows local users to execute scripts with elevated privileges.
5
Is CVE-2007-6210 still relevant today?
While CVE-2007-6210 is an older vulnerability, it remains relevant for systems still running unsupported versions of Zabbix.