# Remote code execution in listening Zabbix agent (CVE-2023-32728)

DevFeed: [Remote code execution in listening Zabbix agent (CVE-2023-32728)](<https://devfeed.tech/articles/remote-code-execution-in-listening-zabbix-agent-cve-2023-32728-53584.md>)

Original publisher: [Read original article](<https://blog.vyos.io/remote-code-execution-in-listening-zabbix-agent-cve-2023-32728>)

Author: daniil@sentrium.io (Daniil Baturin)

Published: 2024-10-24T09:17:37Z

Content type: news

Language: en

Sources: [VyOS](<https://devfeed.tech/sources/vyos-blog.md>)

Topics: [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Exploit](<https://devfeed.tech/topics/exploit.md>), [version](<https://devfeed.tech/topics/version.md>), [configuration](<https://devfeed.tech/topics/configuration.md>)

Tags: [1-4](<https://devfeed.tech/tags/1-4.md>), [configuration](<https://devfeed.tech/tags/configuration.md>), [cve](<https://devfeed.tech/tags/cve.md>), [exploit](<https://devfeed.tech/tags/exploit.md>), [release](<https://devfeed.tech/tags/release.md>), [remote-code-execution](<https://devfeed.tech/tags/remote-code-execution.md>), [remote-code-execution-vulnerability](<https://devfeed.tech/tags/remote-code-execution-vulnerability.md>), [security](<https://devfeed.tech/tags/security.md>), [version](<https://devfeed.tech/tags/version.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>), [vyos](<https://devfeed.tech/tags/vyos.md>), [zabbix](<https://devfeed.tech/tags/zabbix.md>), [zabbix-agent](<https://devfeed.tech/tags/zabbix-agent.md>)

## AI overview

The article reports that the Zabbix agent included in VyOS 1.4.0 is susceptible to remote code execution vulnerability CVE-2023-32728 when configured and listening. VyOS made a hotfix available to subscribers and plans to include the fix in VyOS 1.4.1.

## Source excerpt

Hello, Community! Our community member Fabian Riechsteiner brought to our attention that the version of the Zabbix agent present in VyOS 1.4.0 is susceptible to a remote code execution vulnerability -- CVE-2023-32728. We made a hotfix available to subscribers, and the fix will be a part of the upcoming VyOS 1.4.1 release.