CVE-2024-36466

Publication date

2024-11-28 07:19:48

Family

Zabbix

State

PUBLISHED

Description

A bug in the code allows an attacker to sign a forged zbx_session cookie, which then allows them to sign in with admin permissions.