First published: Mon Feb 17 2020(Updated: )
A File Inclusion vulnerability exists in Zabbix 2.0.6 due to inadequate sanitization of request strings in CGI scripts, which could let a remote malicious user execute arbitrary code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zabbix Zabbix | =2.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2013-3738 is critical with a score of 9.8.
CVE-2013-3738 affects Zabbix version 2.0.6.
CVE-2013-3738 is a File Inclusion vulnerability in Zabbix 2.0.6.
A remote attacker can exploit CVE-2013-3738 by executing arbitrary code through inadequate sanitization of request strings in CGI scripts.
Yes, a fix for CVE-2013-3738 is available. Please refer to the reference link for more information.