When exporting media types, the password is exported in the YAML in plain text. This appears to be a best practices type issue and may have no actual impact. The user would need to have permissions to access the media types and therefore would be expected to have access to these passwords.
Metrics
Affected Vendors & Products
References
History
Mon, 03 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 03 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 08 Oct 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zabbix
Zabbix zabbix |
|
| CPEs | cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Zabbix
Zabbix zabbix |
Wed, 27 Nov 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | When exporting media types, the password is exported in the YAML in plain text. This appears to be a best practices type issue and may have no actual impact. The user would need to have permissions to access the media types and therefore would be expected to have access to these passwords. | |
| Title | Media Types: Office365, SMTP passwords are unencrypted and visible in plaintext when exported | |
| Weaknesses | CWE-256 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zabbix
Published: 2024-11-27T14:01:58.136Z
Updated: 2025-11-03T21:55:14.745Z
Reserved: 2024-05-28T11:21:24.946Z
Link: CVE-2024-36464
Updated: 2025-11-03T21:55:14.745Z
Status : Modified
Published: 2024-11-27T14:15:17.830
Modified: 2025-11-03T22:16:58.307
Link: CVE-2024-36464
No data.