Uploaded image for project: 'ZABBIX BUGS AND ISSUES'
  1. ZABBIX BUGS AND ISSUES
  2. ZBX-15870

Zabbix version number should not be available for unauthorized users

    XMLWordPrintable

Details

    • Team B
    • Sprint 50 (Mar 2019), Sprint 51 (Apr 2019)
    • 0.25

    Description

      Starting from version 3.0, Zabbix has login page without version number at page footer. That was done to avoid information leakage about potential vulnerabilities to unauthorized users.

      Unfortunately, version number is included in jsLoader URL so unauthorized user can access it anyway.

      Attachments

        Issue Links

          Activity

            People

              Miks.Kronkalns Miks Kronkalns
              Miks.Kronkalns Miks Kronkalns
              Votes:
              1 Vote for this issue
              Watchers:
              6 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: