CVE-2024-22116
Estado: ModificadaAlta (7.2)—
An administrator with restricted permissions can exploit the script execution functionality within the Monitoring Hosts section. The lack of default escaping for script parameters enabled this user ability to execute arbitrary code via the Ping script, thereby compromising infrastructure.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
- Puntuación base: 7.2
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 1.59%
- Percentil entre todas las CVEs puntuadas: 75
- Fecha de la puntuación: 7/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-94
- CWE-94
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2024-22116",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2024-22116",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2024-12-04T04:55:28.879375Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "security@zabbix.com",
"cvssData": {
"scope": "CHANGED",
"version": "3.1",
"baseScore": 9.9,
"attackVector": "NETWORK",
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "LOW",
"confidentialityImpact": "HIGH"
},
"impactScore": 6,
"exploitabilityScore": 3.1
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 7.2,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "HIGH",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 1.2
}
]
},
"affected": [
{
"source": "security@zabbix.com",
"affectedData": [
{
"repo": "https://git.zabbix.com/",
"vendor": "Zabbix",
"modules": [
"Server"
],
"product": "Zabbix",
"versions": [
{
"status": "affected",
"changes": [
{
"at": "6.4.16rc1",
"status": "unaffected"
}
],
"version": "6.4.9",
"versionType": "git",
"lessThanOrEqual": "6.4.15"
},
{
"status": "affected",
"changes": [
{
"at": "7.0.0rc3",
"status": "unaffected"
}
],
"version": "7.0.0alpha1",
"versionType": "git",
"lessThanOrEqual": "7.0.0rc2"
}
],
"defaultStatus": "unaffected"
}
]
},
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"affectedData": [
{
"cpes": [
"cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*"
],
"vendor": "zabbix",
"product": "zabbix",
"versions": [
{
"status": "affected",
"version": "6.4.9",
"versionType": "custom",
"lessThanOrEqual": "6.4.15"
},
{
"status": "affected",
"version": "7.0.0alpha1",
"versionType": "custom",
"lessThanOrEqual": "7.0.0rc2"
}
],
"defaultStatus": "unknown"
}
]
}
],
"published": "2024-08-12T13:38:15.863",
"references": [
{
"url": "https://support.zabbix.com/browse/ZBX-25016",
"tags": [
"Vendor Advisory"
],
"source": "security@zabbix.com"
},
{
"url": "https://lists.debian.org/debian-lts-announce/2024/10/msg00000.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Secondary",
"source": "security@zabbix.com",
"description": [
{
"lang": "en",
"value": "CWE-94"
}
]
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-94"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An administrator with restricted permissions can exploit the script execution functionality within the Monitoring Hosts section. The lack of default escaping for script parameters enabled this user ability to execute arbitrary code via the Ping script, thereby compromising infrastructure."
},
{
"lang": "es",
"value": "Un administrador con permisos restringidos puede aprovechar la funcionalidad de ejecución de scripts dentro de la sección Monitoreo de hosts. La falta de un escape predeterminado para los parámetros del script permitió a este usuario ejecutar código arbitrario a través del script Ping, comprometiendo así la infraestructura."
}
],
"lastModified": "2026-06-17T07:10:44.560",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F6048A1B-69B0-40A5-8E50-00DECE750C58",
"versionEndIncluding": "6.4.15",
"versionStartIncluding": "6.4.9"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha1:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "93EB5757-7F98-4428-9616-C30A647A6612"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha2:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DA00BDB5-433F-44E5-87AC-DA01C64B5DB3"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha3:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "98C46C92-9D86-45CD-88FE-DFBB5502BB88"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha4:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B568E6DD-A6D1-4402-BB40-7DA2596A5BC8"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha5:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B9C3673B-8459-4C63-8E90-724D1D42A8BB"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha6:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7C9F6957-7526-4852-A579-DE556DBFAA97"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha7:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "81A7A191-93DE-4C5D-963E-E8890FF7AACA"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha8:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AEE202D5-3C88-43A5-9328-FC78D0B9B8CF"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha9:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F88BFB75-7951-47D5-941F-3839E9E31FFA"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:beta1:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8216247E-C160-4D2C-906E-9D8CD731B5C2"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:beta2:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "06548219-0DC3-4B5B-85D1-B1EE0FA30CD2"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:beta3:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4D23985B-2F4D-41F6-B9D6-7B184FC7E447"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:rc1:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "97964B9B-6A5E-4547-8886-E81B0849A876"
},
{
"criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:rc2:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "40992B5F-0D83-4D5C-9188-E84C369FF92F"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security@zabbix.com"
}