CVE-2014-1682
Publication date 8 May 2014
Last updated 24 July 2024
Ubuntu priority
Description
The API in Zabbix before 1.8.20rc1, 2.0.x before 2.0.11rc1, and 2.2.x before 2.2.2rc1 allows remote authenticated users to spoof arbitrary users via the user name in a user.login request.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| zabbix | ||
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty |
Not affected
|
|
Patch details
| Package | Patch details |
|---|---|
| zabbix |