CVE-2013-3738: Zabbix

Critical severity, CVSS 9.8. EPSS: 3.1% chance of exploitation in the next 30 days.

A File Inclusion vulnerability exists in Zabbix 2.0.6 due to inadequate sanitization of request strings in CGI scripts, which could let a remote malicious user execute arbitrary code.

Affected products

  • Zabbix Zabbix: version 2.0.6 only

Published 2020-02-17. Last modified 2026-06-16.