Vulnerability CVE-2024-22119: Information

Description

The cause of vulnerability is improper validation of form input field “Name” on Graph page in Items section.

Severity: MEDIUM (5.4) Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

Published: Feb. 9, 2024
Modified: April 28, 2024
Error type identifier: CWE-79

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
zabbixsisyphus6.0.27-alt16.0.29-alt1ALT-PU-2024-3075-1341482Fixed
zabbixsisyphus_e2k6.0.27-alt26.0.29-alt1ALT-PU-2024-4292-1-Fixed
zabbixsisyphus_riscv646.0.27-alt16.0.29-alt1ALT-PU-2024-4119-1-Fixed
zabbixsisyphus_loongarch646.0.27-alt16.0.29-alt1ALT-PU-2024-3139-1-Fixed
zabbixp106.0.27-alt0.p10.16.0.29-alt0.p10.1ALT-PU-2024-3077-2341483Fixed
zabbixp10_e2k6.0.27-alt0.p10.16.0.29-alt0.p10.1ALT-PU-2024-4325-1-Fixed
zabbixc10f16.0.27-alt0.c10f1.16.0.27-alt0.c10f1.1ALT-PU-2024-3365-2341486Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:zabbix:zabbix:7.0.0:alpha2:*:*:*:*:*:*

      cpe:2.3:a:zabbix:zabbix:7.0.0:alpha3:*:*:*:*:*:*

      cpe:2.3:a:zabbix:zabbix:7.0.0:alpha1:*:*:*:*:*:*

      cpe:2.3:a:zabbix:zabbix:7.0.0:alpha6:*:*:*:*:*:*

      cpe:2.3:a:zabbix:zabbix:7.0.0:alpha7:*:*:*:*:*:*

      cpe:2.3:a:zabbix:zabbix:7.0.0:alpha4:*:*:*:*:*:*

      cpe:2.3:a:zabbix:zabbix:7.0.0:alpha5:*:*:*:*:*:*

      cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*
      Start including
      6.4.0
      End excliding
      6.4.9

      cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*
      Start including
      6.0.0
      End excliding
      6.0.24

      cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*
      Start including
      5.0.0
      End excliding
      5.0.40