Vulnerability Bulletins

CVE-2011-3264

   
Affected software ZABBIX
 
Zabbix before 1.8.6 allows remote attackers to obtain sensitive information via an invalid srcfld2 parameter to popup.php, which reveals the installation path in an error message.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2011-3264