Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-43516: [ZBX-22002] Zabbix Agent Installer Adds Allow All TCP any any firewall rule

A Firewall Rule which allows all incoming TCP connections to all programs from any source and to all ports is created in Windows Firewall after Zabbix agent installation (MSI)

CVE
#windows#ssl

Steps to reproduce:

  1. Download Agent 1 or Agent 2 (Does not Matter)
    1. Windows-Any-amd64-6.0 LTS-OpenSSL-MSI
    2. Windows-Any-amd64-6.2-OpenSSL-MSI
  2. Install with Default Options
  3. Set Server and Proxy Server to Zabbix Server IP
  4. Install
  5. Check Firewall Rules (Seen in both Domain and Non-Domain)

Have Only tested 6.0.10,6.0.11,6.2.15. Others can test other versions and platforms.

Result:

A Firewall Rule which allows all incoming TCP connections to all programs from any source and to all ports is created in Windows Firewall.

See Screenshot

Expected:
Allow Agent Port Number only.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907