no security measures are taken for external checks

XMLWordPrintable

    • Type: Defect (Security)
    • Resolution: Duplicate
    • Priority: Critical
    • None
    • Affects Version/s: 1.8.2
    • Component/s: Server (S)
    • Sprint 50 (Mar 2019)

      We might wish to do more security checking for external checks, similar to what ZBX-790 and ZBX-1575 did for UserParameters. Currently, absolutely no security checks are performed. I have not tried, but this should work: non-existent.sh[ || rm -rf / ].

            Assignee:
            Andrejs Kozlovs
            Reporter:
            Aleksandrs Saveljevs
            Team A
            Votes:
            2 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: