SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Zabbix CApiService SQL Injection

Category: WEB-ATTACKS      

A low privilege (regular) Zabbix user with API access can use SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL commands via the groupBy parameter.


Relevant Information