CVE-2025-27237: DLL injection in Zabbix Agent and Agent 2 via OpenSSL configuration
In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation by injecting a DLL.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27237?
CVE-2025-27237 is considered to have a moderate severity due to the potential for local privilege escalation.
How do I fix CVE-2025-27237?
To fix CVE-2025-27237, change the permissions of the OpenSSL configuration file path to restrict write access to low-privileged users.
Which versions of Zabbix are affected by CVE-2025-27237?
CVE-2025-27237 affects Zabbix Agent and Zabbix Agent 2 running on Windows.
What is the potential impact of CVE-2025-27237?
The potential impact of CVE-2025-27237 includes malicious modification of the OpenSSL configuration, leading to DLL injection and privilege escalation.
How can I mitigate the risks associated with CVE-2025-27237?
To mitigate risks associated with CVE-2025-27237, ensure that the directories used for the OpenSSL configuration file are properly secured and monitored.