CVE-2023-29456
MEDIUMZabbix Frontend 4.0.0-4.0.45 - Improper Input Validation in URL Validation Scheme
Title source: llmDescription
URL validation scheme receives input from a user and then parses it to identify its various components. The validation scheme can ensure that all URL components comply with internet standards.
References (3)
Core 3
Core References
Patch, Vendor Advisory
https://support.zabbix.com/browse/ZBX-22987
Scores
CVSS v3
5.7
EPSS
0.0047
EPSS Percentile
37.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-20
CWE-79
Status
published
Products (1)
zabbix/frontend
4.0.0 - 4.0.46
Published
Jul 13, 2023
Tracked Since
Feb 18, 2026