← Back to browse · API

CVE-2022-46768

Severity
MEDIUM
CVSS
5.9
EPSS
0.47772
Risk score
40.32
CISA KEV
No
PoC
No
Published
2022-12-19
Modified
2025-04-16
First seen
2026-08-07
Aliases
EUVD-2022-49551, GHSA-R7FF-GV9G-75W3
Products
Zabbix:Web Service Report Generation 6.0.0-6.0.11, Zabbix:Web Service Report Generation 6.2.0-6.2.5
Sources
euvd EUVD-2022-49551

Description

Arbitrary file read vulnerability exists in Zabbix Web Service Report Generation, which listens on the port 10053. The service does not have proper validation for URL parameters before reading the files.

References