Lucene search

K
cve[email protected]CVE-2011-3264
HistoryAug 19, 2011 - 9:55 p.m.

CVE-2011-3264

2011-08-1921:55:02
CWE-200
web.nvd.nist.gov
26
zabbix
cve-2011-3264
info disclosure
vulnerability
security
popup.php

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.1 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.1%

Zabbix before 1.8.6 allows remote attackers to obtain sensitive information via an invalid srcfld2 parameter to popup.php, which reveals the installation path in an error message.

Affected configurations

NVD
Node
zabbixzabbixRange1.8.5
OR
zabbixzabbixMatch1.1
OR
zabbixzabbixMatch1.1beta10
OR
zabbixzabbixMatch1.1beta11
OR
zabbixzabbixMatch1.1beta12
OR
zabbixzabbixMatch1.1beta2
OR
zabbixzabbixMatch1.1beta3
OR
zabbixzabbixMatch1.1beta4
OR
zabbixzabbixMatch1.1beta5
OR
zabbixzabbixMatch1.1beta6
OR
zabbixzabbixMatch1.1beta7
OR
zabbixzabbixMatch1.1beta8
OR
zabbixzabbixMatch1.1beta9
OR
zabbixzabbixMatch1.1.1
OR
zabbixzabbixMatch1.1.2
OR
zabbixzabbixMatch1.1.3
OR
zabbixzabbixMatch1.1.4
OR
zabbixzabbixMatch1.1.5
OR
zabbixzabbixMatch1.1.6
OR
zabbixzabbixMatch1.1.7
OR
zabbixzabbixMatch1.3beta
OR
zabbixzabbixMatch1.3.1beta
OR
zabbixzabbixMatch1.3.2beta
OR
zabbixzabbixMatch1.3.3beta
OR
zabbixzabbixMatch1.3.4beta
OR
zabbixzabbixMatch1.3.5beta
OR
zabbixzabbixMatch1.3.6beta
OR
zabbixzabbixMatch1.3.7beta
OR
zabbixzabbixMatch1.3.8beta
OR
zabbixzabbixMatch1.4.2
OR
zabbixzabbixMatch1.4.3
OR
zabbixzabbixMatch1.4.4
OR
zabbixzabbixMatch1.4.5
OR
zabbixzabbixMatch1.4.6
OR
zabbixzabbixMatch1.5beta
OR
zabbixzabbixMatch1.5.1beta
OR
zabbixzabbixMatch1.5.2beta
OR
zabbixzabbixMatch1.5.3beta
OR
zabbixzabbixMatch1.5.4beta
OR
zabbixzabbixMatch1.6
OR
zabbixzabbixMatch1.6.1
OR
zabbixzabbixMatch1.6.2
OR
zabbixzabbixMatch1.6.3
OR
zabbixzabbixMatch1.6.4
OR
zabbixzabbixMatch1.6.5
OR
zabbixzabbixMatch1.6.6
OR
zabbixzabbixMatch1.6.7
OR
zabbixzabbixMatch1.6.8
OR
zabbixzabbixMatch1.6.9
OR
zabbixzabbixMatch1.7
OR
zabbixzabbixMatch1.7.1
OR
zabbixzabbixMatch1.7.2
OR
zabbixzabbixMatch1.7.3
OR
zabbixzabbixMatch1.7.4
OR
zabbixzabbixMatch1.8
OR
zabbixzabbixMatch1.8.1
OR
zabbixzabbixMatch1.8.2
OR
zabbixzabbixMatch1.8.3
OR
zabbixzabbixMatch1.8.3rc1
OR
zabbixzabbixMatch1.8.3rc2
OR
zabbixzabbixMatch1.8.3rc3
OR
zabbixzabbixMatch1.8.4
OR
zabbixzabbixMatch1.8.4rc1
OR
zabbixzabbixMatch1.8.4rc2
OR
zabbixzabbixMatch1.8.4rc3
OR
zabbixzabbixMatch1.8.4rc4
OR
zabbixzabbixMatch1.8.5rc1

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.1 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.1%