First published: Fri Feb 07 2020(Updated: )
Zabbix 2.0.9 has an Arbitrary Command Execution Vulnerability
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zabbix Server | =2.0.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3628 is an Arbitrary Command Execution Vulnerability in Zabbix 2.0.9.
CVE-2013-3628 has a severity rating of 8.8 (High).
The Arbitrary Command Execution Vulnerability in Zabbix 2.0.9 can be exploited by an attacker to execute arbitrary commands on the affected system.
Yes, updating Zabbix to a version that is not affected by the vulnerability is the recommended fix for CVE-2013-3628.
You can find more information about CVE-2013-3628 on the following references: [1] http://www.exploit-db.com/exploits/29321 [2] http://www.securityfocus.com/bid/63453 [3] https://community.rapid7.com/community/metasploit/blog/2013/10/30/seven-foss-disclosures-part-one