CVE-2025-49643
MEDIUM
6.0
CVSS Severity Score
Vulnerability Description
An authenticated Zabbix user (including Guest) is able to cause disproportionate CPU load on the webserver by sending specially crafted parameters to /imgstore.php, leading to potential denial of service.
Affected Platforms (CPE)
📦
Zabbix
Frontend
>= 6.0.0 and < 6.0.42>= 7.0.0 and < 7.0.19>= 7.2.0 and < 7.2.13>= 7.4.0 and < 7.4.3
