CVE-2024-22121

MEDIUM

Zabbix Agent - Privilege Escalation

Title source: llm
STIX 2.1

Description

A non-admin user can change or remove important features within the Zabbix Agent application, thus impacting the integrity and availability of the application.

Scores

CVSS v3 6.1
EPSS 0.0003
EPSS Percentile 8.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-281
Status published
Products (2)
zabbix/zabbix 7.0.0 alpha1 (14 CPE variants)
zabbix/zabbix 5.0.0 - 5.0.42
Published Aug 12, 2024
Tracked Since Feb 18, 2026