← Back to CVE List
CVE-2024-36465
A low privilege (regular) Zabbix user with API access can use SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL commands via the groupBy parameter.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt