ZabbixδÊÚȨ½Ó¼û·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-10-11

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºÔÝÎÞ£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


Zabbix <= 4.4


·ì϶¸ÅÊö


ZabbixÊÇÀ­ÍÑάÑÇZabbixSIA¹«Ë¾µÄÒ»Ì׿ªÔ´µÄ¼à¿ØÏµÍ³¡£¸Ãϵͳ¿É¼à¶½¸÷ÀàÍøÂç²ÎÊý£¬²¢Ìṩ֪ͨ»úÔìÈÃϵͳÖÎÀíÔ±¼±¾ç¶¨Î»¡¢½â¾ö´æÔڵĸ÷ÀàÎÊÌâ¡£


Zabbix´æÔÚÒ»¸öδÊÚȨ½Ó¼û·ì϶£¬Í¨¹ý¸Ã·ì϶£¬¹¥»÷ÕßÄܹ»ÔÚδ¾­ÊÚȨµÄÇé¿öϽӼûZabbix·þÎñÆ÷ÉϵÄÊý¾Ý£¬µ¼ÖÂÃô¸ÐÐÅϢй¶¡£


·ì϶ÑéÖ¤


EXP£ºhttps://www.exploit-db.com/exploits/47474¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÔÝδ°ä²¼½¨¸´´ëÊ©½â¾ö´Ë°²È«ÎÊÌ⣬½¨ÒéʹÓôËÈí¼þµÄÓû§ËæÊ±¹Ø×¢³§ÉÌÖ÷Ò³

»ò²Î¿¼ÍøÖ·ÒÔ»ñÈ¡½â¾ö·¨×Ó£º

https://support.zabbix.com/projects/ZBX/issues/ZBX-16748?filter=allissues


»º½â´ëÊ©£º

¶ÔZabbix·þÎñÆ÷¿ªÆô½Ó¼û½ÚÔ죬ֻÔÊÐí°×Ãûµ¥ÄÚµÄÓû§½Ó¼ûZabbix·þÎñÆ÷¡£


²Î¿¼Á´½Ó


https://www.exploit-db.com/exploits/47474