Candidate: CVE-2009-4498 PublicDate: 2009-12-31 18:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4498 Description: The node_process_command function in Zabbix Server before 1.8 allows remote attackers to execute arbitrary commands via a crafted request. Ubuntu-Description: Notes: Bugs: Priority: high Discovered-by: Assigned-to: CVSS: Patches_zabbix: upstream_zabbix: released (1.8) dapper_zabbix: DNE hardy_zabbix: ignored (reached end-of-life) intrepid_zabbix: needed (reached end-of-life) jaunty_zabbix: ignored (reached end-of-life) karmic_zabbix: ignored (reached end-of-life) lucid_zabbix: not-affected (1:1.8-1) maverick_zabbix: not-affected (1:1.8-1) natty_zabbix: not-affected (1:1.8-1) oneiric_zabbix: not-affected (1:1.8-1) precise_zabbix: not-affected (1:1.8-1) quantal_zabbix: not-affected (1:1.8-1) raring_zabbix: not-affected (1:1.8-1) devel_zabbix: not-affected (1:1.8-1)