How to Buy
This script is Copyright (C) 2010-2016 Tenable Network Security, Inc.
The remote service allows execution of arbitrary commands.
The version of Zabbix server running on the remote host has a command
execution vulnerability in the 'process_node_command()' function of
A remote attacker could exploit this by sending a specially crafted
request, resulting in the execution of operating system commands.
See also :
Upgrade to Zabbix 1.6.8 or later.
Risk factor :
High / CVSS Base Score : 7.5
CVSS Temporal Score : 6.5
Public Exploit Available : true
Nessus Plugin ID: 44620 ()
Bugtraq ID: 37989
CVE ID: CVE-2009-4498
Get Nessus Professional to scan unlimited IPs, run compliance checks & more
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.