Total vulnerabilities in the database
SQL injection vulnerability in the get_history_lastid function in the nodewatcher component in Zabbix Server before 1.6.8 allows remote attackers to execute arbitrary SQL commands via a crafted request, possibly related to the send_history_last_id function in zabbix_server/trapper/nodehistory.c.
Software | From | Fixed in |
---|---|---|
zabbix / zabbix | 1.1.2 | 1.1.2.x |
zabbix / zabbix | 1.1.4 | 1.1.4.x |
zabbix / zabbix | 1.4.3 | 1.4.3.x |
zabbix / zabbix | - | 1.6.7.x |
zabbix / zabbix | 1.4.6 | 1.4.6.x |
zabbix / zabbix | 1.4.4 | 1.4.4.x |
zabbix / zabbix | 1.1.3 | 1.1.3.x |
zabbix / zabbix | 1.6.6 | 1.6.6.x |
zabbix / zabbix | 1.4.2 | 1.4.2.x |
zabbix / zabbix | 1.1.5 | 1.1.5.x |