CVE-2023-32721

Publication date 12 October 2023

Last updated 11 July 2025


Ubuntu priority

Cvss 3 Severity Score

7.6 · High

Score breakdown

A stored XSS has been found in the Zabbix web application in the Maps element if a URL field is set with spaces before URL.

Status

Package Ubuntu Release Status
zabbix 25.04 plucky
Needs evaluation
24.10 oracular Ignored end of life, was needs-triage
24.04 LTS noble Not in release
23.10 mantic Ignored end of life, was needed
23.04 lunar Ignored end of life, was needs-triage
22.04 LTS jammy
Vulnerable
20.04 LTS focal
Vulnerable
18.04 LTS bionic
Not affected
16.04 LTS xenial
Not affected
14.04 LTS trusty
Not affected

Severity score breakdown

Parameter Value
Base score 7.6 · High
Attack vector Network
Attack complexity Low
Privileges required Low
User interaction Required
Scope Changed
Confidentiality Low
Integrity impact High
Availability impact None
Vector CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:H/A:N