CVE Published: 24/05/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: talos |
Vendor: Zabbix |
Product: Zabbix Server Status : PUBLISHED
CVE-2017-2824 Description
An exploitable code execution vulnerability exists in the trapper command functionality of Zabbix Server 2.4.X. A specially crafted set of packets can cause a command injection resulting in remote code execution. An attacker can make requests from an active Zabbix Proxy to trigger this vulnerability.