CVE-2016-10742: Medium severity zabbix vulnerability
Zabbix before 2.2.21rc1, 3.x before 3.0.13rc1, 3.1.x and 3.2.x before 3.2.10rc1, and 3.3.x and 3.4.x before 3.4.4rc1 allows open redirect via the request parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-10742?
The severity of CVE-2016-10742 is medium with a severity value of 6.1.
How can I fix the open redirect vulnerability in Zabbix?
To fix the open redirect vulnerability in Zabbix, you should upgrade to version 2.2.21rc1, 3.0.13rc1, 3.2.10rc1, 3.4.4rc1, or later.
What versions of Zabbix are affected by CVE-2016-10742?
Zabbix versions before 2.2.21rc1, 3.x before 3.0.13rc1, 3.1.x and 3.2.x before 3.2.10rc1, and 3.3.x and 3.4.x before 3.4.4rc1 are affected by CVE-2016-10742.
Can the open redirect vulnerability be exploited remotely?
Yes, the open redirect vulnerability in Zabbix can be exploited remotely.
Where can I find more information about CVE-2016-10742?
You can find more information about CVE-2016-10742 in the references provided: [Link 1](https://lists.debian.org/debian-lts-announce/2019/03/msg00010.html), [Link 2](https://lists.debian.org/debian-lts-announce/2020/11/msg00039.html), [Link 3](https://support.zabbix.com/browse/ZBX-10272)