Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2022-23131 — CVE-2022-23131漏洞利用工具开箱即用。 | Kitploit
Tools/GitHubGitHub/kazaf6s/cve-2022-23131
Authentication & AuthorizationVulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingRed Teaming
GitHubkazaf6s/cve-2022-23131

CVE-2022-23131

CVE-2022-23131漏洞利用工具开箱即用。

View Repository
1144 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2022-23131

CVE-2022-23131(Unsafe Session Storage)

0x00 Preface

Zabbix vulnerability (CVE-2022-23131), I accidentally obtained a Zabbix server of a foreign company. Zabbix Sia Zabbix is an open-source monitoring system developed by Zabbix SIA (Zabbix Sia) from Latvia. This system supports network monitoring, server monitoring, cloud monitoring, application monitoring, etc. Zabbix Frontend has a security vulnerability. The vulnerability stems from the fact that when SAML SSO authentication (non-default) is enabled, malicious actors can modify session data because the user login stored in the session is not verified. An unauthenticated malicious attacker may exploit this issue to escalate privileges and gain administrative access to the Zabbix frontend.

0x02 Vulnerability Impact

5.4.8

5.0.18

4.0.36

0x03 Usage

image

Download Tool