CVE-2013-5743
critical · 9.8Multiple SQL injection vulnerabilities in Zabbix 1.8.x before 1.8.18rc1, 2.0.x before 2.0.9rc1, and 2.1.x before 2.1.7.
9.8
CVSS
80.0%
EPSS (exploit prob.)
100th
EPSS percentile
2019-12-11
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-89
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| zabbix | zabbix | >= 1.8, <= 1.8.17 |
| zabbix | zabbix | >= 2.0.0, <= 2.0.8 |
| zabbix | zabbix | >= 2.1.0, <= 2.1.7 |
Check a specific version with /api/v1/cve/match.
References
- https://admin.fedoraproject.org/updates/zabbix-1.8.18-1.el6
- https://admin.fedoraproject.org/updates/zabbix20-2.0.8-3.el6
- https://admin.fedoraproject.org/updates/zabbix20-2.0.9-1.el5
- https://support.zabbix.com/browse/ZBX-7091
- https://admin.fedoraproject.org/updates/zabbix-1.8.18-1.el6
- https://admin.fedoraproject.org/updates/zabbix20-2.0.8-3.el6
- https://admin.fedoraproject.org/updates/zabbix20-2.0.9-1.el5
- https://support.zabbix.com/browse/ZBX-7091
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2013-5743