CVE-2025-27240

A Zabbix adminitrator can inject arbitrary SQL during the autoremoval of hosts by inserting malicious SQL in the 'Visible name' field.
CVSS

No CVSS.

Configurations

No configuration.

History

12 Sep 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-12 11:15

Updated : 2025-09-12 11:15


NVD link : CVE-2025-27240

Mitre link : CVE-2025-27240

CVE.ORG link : CVE-2025-27240


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')