CVE-2017-2824: Command Injection
Published May 24, 2017
·Updated
An exploitable code execution vulnerability exists in the trapper command functionality of Zabbix Server 2.4.X. A specially crafted set of packets can cause a command injection resulting in remote code execution. An attacker can make requests from an active Zabbix Proxy to trigger this vulnerability.
Affected Software
24 affected componentsFixes available
debian/zabbix
1:4.0.4+dfsg-11:4.0.4+dfsg-1+deb10u21:5.0.8+dfsg-11:6.0.14+dfsg-1
Zabbix Zabbix=2.4.0
Zabbix Zabbix=2.4.0-rc1
Zabbix Zabbix=2.4.0-rc2
Zabbix Zabbix=2.4.0-rc3
Zabbix Zabbix=2.4.1
Zabbix Zabbix=2.4.1-rc1
Zabbix Zabbix=2.4.1-rc2
Zabbix Zabbix=2.4.2
Zabbix Zabbix=2.4.2-rc1
Zabbix Zabbix=2.4.3
Zabbix Zabbix=2.4.3-rc1
Zabbix Zabbix=2.4.4
Zabbix Zabbix=2.4.4-rc1
Zabbix Zabbix=2.4.5
Zabbix Zabbix=2.4.5-rc1
Zabbix Zabbix=2.4.6
Zabbix Zabbix=2.4.6-rc1
Zabbix Zabbix=2.4.7
Zabbix Zabbix=2.4.7-rc1
Zabbix Zabbix=2.4.8
Zabbix Zabbix=2.4.8-rc1
Zabbix Zabbix=2.4.9
Zabbix Zabbix=2.4.9-rc1
Event History
May 24, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-2824?
CVE-2017-2824 has been rated as a high-severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2017-2824?
To fix CVE-2017-2824, upgrade to Zabbix Server version 2.4.10 or newer.
3
What versions of Zabbix are affected by CVE-2017-2824?
CVE-2017-2824 affects Zabbix Server 2.4.X versions prior to 2.4.10.
4
Can CVE-2017-2824 be exploited remotely?
Yes, CVE-2017-2824 can be exploited remotely through specially crafted packets.
5
What components are involved in CVE-2017-2824?
CVE-2017-2824 involves the trapper command functionality of Zabbix Server.