Zabbix before 2.2.21rc1, 3.x before 3.0.13rc1, 3.1.x and 3.2.x before 3.2.10rc1, and 3.3.x and 3.4.x before 3.4.4rc1 allows open redirect via the request parameter.
References
Link | Resource |
---|---|
https://support.zabbix.com/browse/ZBX-13133 | Vendor Advisory |
https://support.zabbix.com/browse/ZBX-10272 | Exploit Vendor Advisory |
https://lists.debian.org/debian-lts-announce/2019/03/msg00010.html | Mailing List Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2020/11/msg00039.html |
Information
Published : 2019-02-17 08:29
Updated : 2020-11-21 12:15
NVD link : CVE-2016-10742
Mitre link : CVE-2016-10742
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
debian
- debian_linux
zabbix
- zabbix