JavaScript pre-processing can be used by the attacker to gain access to the file system (read-only access on behalf of user "zabbix") on the Zabbix Server or Zabbix Proxy, potentially leading to unauthorized access to sensitive data.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3538-1 | zabbix security update |
Debian DLA |
DLA-3909-1 | zabbix security update |
EUVD |
EUVD-2023-33019 | JavaScript pre-processing can be used by the attacker to gain access to the file system (read-only access on behalf of user "zabbix") on the Zabbix Server or Zabbix Proxy, potentially leading to unauthorized access to sensitive data. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 03 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 06 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Zabbix
Published:
Updated: 2025-11-03T21:47:47.831Z
Reserved: 2023-04-06T18:04:44.891Z
Link: CVE-2023-29450
Updated: 2025-11-03T21:47:47.831Z
Status : Modified
Published: 2023-07-13T09:15:09.660
Modified: 2025-11-03T22:16:06.867
Link: CVE-2023-29450
No data.
OpenCVE Enrichment
No data.
Debian DLA
EUVD