CVE Radar Logo
CVERadar
CVE Radar Logo
CVERadar

CVE-2024-36465

Medium Severity
SVRS
36/100

CVSSv3
NA/10

EPSS
0.00034/1

CVE-2024-36465 is a SQL injection vulnerability in Zabbix, allowing a low-privilege user with API access to execute arbitrary SQL commands. The vulnerability resides in include/classes/api/CApiService.php and is triggered via the groupBy parameter. With an SVRS score of 36, while not critical, this vulnerability should still be addressed to prevent potential data breaches or unauthorized access. Although the CVSS score is 0, the 'In The Wild' tag suggests active exploitation, increasing the risk. Exploitation could lead to unauthorized data access, modification, or deletion. Decision-makers should prioritize patching Zabbix instances to mitigate this potential threat.

In The Wild
2025-04-02

2025-04-02

Indicators of Compromise

No IOCs found for this CVE

Exploits

No exploits found for this CVE

Enhance Your CVE Management with SOCRadar Vulnerability Intelligence
Get comprehensive CVE details, real-time notifications, and proactive threat management all in one platform.
CVE Details
Access comprehensive CVE information instantly
Real-time Tracking
Subscribe to CVEs and get instant updates
Exploit Analysis
Monitor related APT groups and threats
IOC Tracking
Analyze and track CVE-related IOCs

News

Tageszusammenfassung - 02.04.2025
CERT.at2025-04-02
Tageszusammenfassung - 02.04.2025 | End-of-Day report Timeframe: Dienstag 01-04-2025 18:00 - Mittwoch 02-04-2025 18:00 Handler: Michael Schlagenhaufer Co-Handler: n/a News Unitree Go1: Gefährliche Backdoor in populärem Roboterhund entdeckt Konkret geht es um das Modell Go1, das in der Vergangenheit bereits von den US-Marines für Testzwecke mit einem Waffensystem ausgestattet wurde. [..] Anhand der Backdoor konnte der Hersteller sowie auch jeder andere Akteur, der im Besitz des erforderlichen API-Schlüssels war, aus der Ferne die vollständige Kontrolle
cert.at
rss
forum
news
CVE-2024-36465 | Zabbix up to 7.0.7/7.2.1 API CApiService.php groupBy sql injection
vuldb.com2025-04-02
CVE-2024-36465 | Zabbix up to 7.0.7/7.2.1 API CApiService.php groupBy sql injection | A vulnerability classified as critical has been found in Zabbix up to 7.0.7/7.2.1. This affects an unknown part of the file include/classes/api/CApiService.php of the component API. The manipulation of the argument groupBy leads to sql injection. This vulnerability is uniquely identified as <a href="https://vuldb.com/?source_cve.302985
vuldb.com
rss
forum
news

Social Media

⚡️The vulnerability details are now available: https://t.co/Yzdm11XElK 🚨🚨Zabbix users, heads up! Multiple vulnerabilities just dropped (CVE-2024-36465, -45699, -45700, -42325, -36469) exposing systems to XSS, DoS, and SQL Injection attacks. ZoomEye Dork👉app="Zabbix https://t.co/QKAsa6mx1x
0
0
0
⚠️ 『A low privilege (regular) Zabbix user with API access can use SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL commands via the groupBy parameter.』 [ZBX-26257] SQL injection in Zabbix API (CVE-2024-36465) https://t.co/sMPeMoNOIH iocs: https://support.zabbix.com/browse/ZBX-26257
0
0
1
⚠️ 『A low privilege (regular) Zabbix user with API access can use SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL commands via the groupBy parameter.』 [ZBX-26257] SQL injection in Zabbix API (CVE-2024-36465) https://t.co/sMPeMoNOIH
0
0
1

Affected Software

No affected software found for this CVE

References

ReferenceLink
[email protected]https://support.zabbix.com/browse/ZBX-26257

CWE Details

CWE IDCWE NameDescription
CWE-89Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')The software constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component.

CVE Radar

Real-time CVE Intelligence & Vulnerability Management Platform

CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.

Get Free Vulnerability Intelligence AccessAccess real-time CVE monitoring, exploit analysis, and threat intelligence