Enhancement: cves/2022/CVE-2022-23134.yaml by mp

patch-1
MostInterestingBotInTheWorld 2022-03-08 12:35:20 -05:00
parent 295de3ec7b
commit 2d350e0a2f
1 changed files with 1 additions and 1 deletions

View File

@ -1,7 +1,7 @@
id: CVE-2022-23134
info:
name: Zabbix Setup Configuration - Unauthenticated Access
name: Zabbix Setup Configuration Authentication Bypass
author: bananabr
severity: medium
description: After the initial setup process, some steps of setup.php file are reachable not only by super-administrators but also by unauthenticated users. A malicious actor can pass step checks and potentially change the configuration of Zabbix Frontend.