A vulnerability was found in Zabbix up to 6.0.31/6.4.16/7.0.0 and classified as critical. Affected by this issue is some unknown functionality of the component Cookie Handler. The manipulation of the argument zbx_session leads to authentication bypass by spoofing.
This vulnerability is handled as CVE-2024-36466. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in Apache HTTP Server up to 1.1 and classified as critical. Affected by this issue is some unknown functionality of the file nph-test-cgi. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-1999-0045. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.