ZabbixδÊÚȨ»á¼ûÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-10-11

Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºÔÝÎÞ£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


Zabbix <= 4.4


Îó²î¸ÅÊö


ZabbixÊÇÀ­ÍÑάÑÇZabbixSIA¹«Ë¾µÄÒ»Ì׿ªÔ´µÄ¼à¿ØÏµÍ³¡£¸Ãϵͳ¿É¼àÊÓÖÖÖÖÍøÂç²ÎÊý£¬²¢Ìṩ֪ͨ»úÖÆÈÃϵͳÖÎÀíÔ±¿ìËÙ¶¨Î»¡¢½â¾ö±£´æµÄÖÖÖÖÎÊÌâ¡£


Zabbix±£´æÒ»¸öδÊÚȨ»á¼ûÎó²î£¬Í¨¹ý¸ÃÎó²î£¬¹¥»÷Õß¿ÉÒÔÔÚδ¾­ÊÚȨµÄÇéÐÎÏ»á¼ûZabbix·þÎñÆ÷ÉϵÄÊý¾Ý£¬µ¼ÖÂÃô¸ÐÐÅϢй¶¡£


Îó²îÑéÖ¤


EXP£ºhttps://www.exploit-db.com/exploits/47474¡£


ÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÔÝδÐû²¼ÐÞ¸´²½·¥½â¾ö´ËÇå¾²ÎÊÌ⣬½¨ÒéʹÓôËÈí¼þµÄÓû§ËæÊ±¹Ø×¢³§ÉÌÖ÷Ò³

»ò²Î¿¼ÍøÖ·ÒÔ»ñÈ¡½â¾ö²½·¥£º

https://support.zabbix.com/projects/ZBX/issues/ZBX-16748?filter=allissues


»º½â²½·¥£º

¶ÔZabbix·þÎñÆ÷¿ªÆô»á¼û¿ØÖÆ£¬Ö»ÔÊÐí°×Ãûµ¥ÄÚµÄÓû§»á¼ûZabbix·þÎñÆ÷¡£


²Î¿¼Á´½Ó


https://www.exploit-db.com/exploits/47474