Skip to main content

Improper Preservation of Permissions

CVE-2024-22121

Severity Medium
Score 6.1/10

Summary

A non-admin user can change or remove important features within the Zabbix Agent application, thus impacting the integrity and availability of the application.

  • LOW
  • LOCAL
  • HIGH
  • UNCHANGED
  • NONE
  • LOW
  • NONE
  • LOW

CWE-281 - Improper Preservation of Permissions

The software does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

References

Advisory Timeline

  • Published