Database/Control plane, storage & DevOps

Zabbix: Unsanitized clientip in the audit log
CVE-2024-22120Control plane, storage & DevOpscurated
Impact
Unsanitized clientip in the audit log -> time-based blind SQL injection around script execution
Who can reach it
Network (remote)
What to do
Control-plane: upgrade; rotate stored host and IPMI credentials
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.