CVE-2022-23134 is an improper authorization vulnerability impacting Zabbix versions 5.4.0 through 5.4.8 and 6.0.0 through 6.0.0beta1. A proof of concept (PoC) was not observed publicly or in the underground. Security researchers at the Cybersecurity and Infrastructure Security Agency (CISA) claimed the vulnerability was actively exploited in the wild.
- CVSS 2.0 SCORE: 5
- CVSS 3.0 SCORE: 3.7
- Exploit Disclosed in the Public:
- Exploit Weaponised:
- PoC Link:
Zabbix addressed the vulnerability in a security advisory with updated versions.
- Reference Link:
- Patch Available: