Security Advisory

CVE-2016-10134

9.8
CRITICAL

Vulnerability Description

SQL injection vulnerability in Zabbix before 2.2.14 and 3.0 before 3.0.4 allows remote attackers to execute arbitrary SQL commands via the toggle_ids array parameter in latest.php.
Published Date February 17, 2017
Official Source NIST NVD Advisory