Description

The HttpRequest object allows to get the HTTP headers from the server's response after sending the request. The problem is that the returned strings are created directly from the data returned by the server and are not correctly encoded for JavaScript. This allows to create internal strings that can be used to access hidden properties of objects.

INFO

Published Date :

2024-11-27T12:05:47.722Z

Last Modified :

2025-11-03T22:04:43.106Z

Source :

Zabbix
AFFECTED PRODUCTS

The following products are affected by CVE-2024-42330 vulnerability.

Vendors Products
Zabbix
  • Frontend
  • Zabbix
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-42330.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact