{"id":"CVE-2006-6692","details":"Multiple format string vulnerabilities in zabbix before 20061006 allow attackers to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in information that would be recorded in the system log using (1) zabbix_log or (2) zabbix_syslog.","modified":"2026-04-10T03:37:54.732906Z","published":"2006-12-21T21:28:00Z","references":[{"type":"ADVISORY","url":"http://secunia.com/advisories/22313"},{"type":"ADVISORY","url":"http://www.vupen.com/english/advisories/2006/3959"},{"type":"EVIDENCE","url":"http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=391388"},{"type":"WEB","url":"http://bugs.debian.org/cgi-bin/bugreport.cgi/zabbix.security.patch?bug=391388%3Bmsg=5%3Batt=1"},{"type":"WEB","url":"http://www.securityfocus.com/bid/20416"}],"schema_version":"1.7.5"}