Tuesday, July 5, 2022
  • Login
  • Register
IT Skills You Need
  • Home
  • Monitoring
  • DevOps
  • AI
  • Big-data
  • Automation
  • Agile
  • ITIL
  • AIOps
No Result
View All Result
  • Home
  • Monitoring
  • DevOps
  • AI
  • Big-data
  • Automation
  • Agile
  • ITIL
  • AIOps
No Result
View All Result
IT Skills You Need
No Result
View All Result
Home Monitoring

Zabbix security advisories regarding CVE-2022-23131 and CVE-2022-23134

admin by admin
25 February 2022
in Monitoring
0 0
0
Zabbix security advisories regarding CVE-2022-23131 and CVE-2022-23134
0
SHARES
1
VIEWS
Share on FacebookShare on Twitter

Here at Zabbix, the security of our product is our top priority. It has come to our attention that two potential CVE issues have been highlighted in tech media outlets  –  CVE-2022-23131 and CVE-2022-23134.

The most critical issue – CVE-2022-23131, affects only Zabbix instances where SAML SSO authentication is in use. While CVE-2022-23134 Affects Zabbix 5.4.x releases older than Zabbix 5.4.9.

Zabbix is aware of the following vulnerabilities And they have since been fixed in Zabbix version 5.4.9 and the stable release of Zabbix 6.0 LTS.

  • CVE-2022-23131 – Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
    • Affected versions: 5.4.0 – 5.4.8; 6.0.0alpha1
  • CVE-2022-23134 – Possible view of the setup pages by unauthenticated users if config file already exists
    • Affected versions: 5.4.0 – 5.4.8; 6.0.0 – 6.0.0beta1

We urge everyone who is using the SAML SSO authentication features in your environment o update your Zabbix instance to one of the aforementioned versions where the security vulnerabilities have been resolved.

keep track of any potential Zabbix security issues, the affected versions, and the required updates, visit our public Zabbix Security Advisories and CVE database page.

The post Zabbix security advisories regarding CVE-2022-23131 and CVE-2022-23134 appeared first on Zabbix Blog.

Tags: AutomationDevOpsMonitoring

Get real time update about this post categories directly on your device, subscribe now.

Unsubscribe
Understanding the Basics of Cloud Computing

Understanding the Basics of Cloud Computing

1 March 2022
Zabbix 6.0 LTS at Zabbix Summit Online 2021

Zabbix 6.0 LTS at Zabbix Summit Online 2021

16 November 2021
Enrich datasets for descriptive analytics with AWS Glue DataBrew

Enrich datasets for descriptive analytics with AWS Glue DataBrew

23 December 2021
Facial Emotion Detection Using CNN

Facial Emotion Detection Using CNN

3 November 2021
Cashing in on Automation—3 Ways to Save

Cashing in on Automation—3 Ways to Save

19 November 2021
More of What Every Business Needs

More of What Every Business Needs

11 February 2022
The best mobile scanning and OCR software in 2022

The best mobile scanning and OCR software in 2022

11 May 2022

How Cynamics built a high-scale, near-real-time, streaming AI inference system using AWS

21 February 2022

Your Guide To Agile Software Development Life Cycles

11 February 2021

Integrating Zabbix with your existing IT solutions by Aleksandrs Larionovs / Zabbix Summit Online 2021

7 January 2022

3 Strategies Employed by the Leading Enterprise Cybersecurity Platforms

13 November 2021

Ingest data from Snowflake to Amazon S3 using AWS Glue Marketplace Connectors

16 March 2022

The 7 best live chat apps for sales in 2021

10 February 2022

The Multilayered Security RPA-as-a-Service Requires

1 December 2020

What is Data Quality Management?

15 November 2021

Easy Agile Podcast Ep.7 Sarah Hajipour, Agile Coach

26 March 2021
IT Skills You Need

© 2022 IT SKILLS YOU NEED

Navigate Site

  • Activity
  • Classifieds
  • Groups
  • Home
  • Members

Follow Us

No Result
View All Result
  • Home

© 2022 IT SKILLS YOU NEED

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms bellow to register

*By registering into our website, you agree to the Terms & Conditions and Privacy Policy.
All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.