FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-02-02 08:34:31 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
f0d33375-b0e0-11ef-a724-b42e991fc52ezabbix -- SQL injection in user.get API

security@zabbix.com reports:

A non-admin user account on the Zabbix frontend with the default User role, or with any other role that gives API access can exploit this vulnerability. An SQLi exists in the CUser class in the addRelatedObjects function, this function is being called from the CUser.get function which is available for every user who has API access.


Discovery 2024-11-27
Entry 2024-12-02
zabbix6-frontend
< 6.0.31

zabbix64-frontend
< 6.4.16

zabbix7-frontend
< 7.0.0

CVE-2024-42327
https://nvd.nist.gov/vuln/detail/CVE-2024-42327