CVE Vulnerabilities

CVE-2022-43516

Published: Dec 05, 2022 | Modified: Nov 21, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
NEGLIGIBLE
root.io logo minimus.io logo echo.ai logo

A Firewall Rule which allows all incoming TCP connections to all programs from any source and to all ports is created in Windows Firewall after Zabbix agent installation (MSI)

Affected Software

NameVendorStart VersionEnd Version
Windows_firewallMicrosoft- (including)- (including)
ZabbixZabbix6.0.10 (including)6.0.12 (excluding)
ZabbixZabbix6.2.0 (including)6.2.6 (excluding)
ZabbixZabbix6.0.12-rc1 (including)6.0.12-rc1 (including)
ZabbixZabbix6.2.6-rc1 (including)6.2.6-rc1 (including)
ZabbixUbuntutrusty*
ZabbixUbuntuxenial*

References