CVE-2020-11800: Critical severity Zabbix Zabbix vulnerability
Published Oct 7, 2020
·Updated
Zabbix Server 2.2.x and 3.0.x before 3.0.31, and 3.2 allows remote attackers to execute arbitrary code.
Affected Software
7 affected components
Zabbix Zabbix>=2.2.0<3.0.31
Zabbix Zabbix=3.2.0
openSUSE Backports SLE=15.0-sp1
openSUSE Backports SLE=15.0-sp2
openSUSE Leap=15.1
openSUSE Leap=15.2
Debian Debian Linux=9.0
Event History
Oct 7, 2020
CVE Published
via MITRE·03:02 PM
Data Sourced
via MITRE·03:02 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID for Zabbix Server?
The vulnerability ID for Zabbix Server is CVE-2020-11800.
2
What is the severity level of CVE-2020-11800?
The severity level of CVE-2020-11800 is critical with a score of 9.8.
3
Which versions of Zabbix Server are affected by CVE-2020-11800?
Zabbix Server 2.2.x, 3.0.x (before 3.0.31), and 3.2 are affected by CVE-2020-11800.
4
How can remote attackers exploit CVE-2020-11800?
Remote attackers can exploit CVE-2020-11800 to execute arbitrary code.
5
Where can I find more information about CVE-2020-11800?
You can find more information about CVE-2020-11800 at the following references: [link1](http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00007.html), [link2](https://lists.debian.org/debian-lts-announce/2020/11/msg00039.html), [link3](https://support.zabbix.com/browse/DEV-1538).