SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-1199

LOW · CVSS 3.7 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-08-18 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

The vulnerability in Zabbix's API and Frontend login lockout mechanism allows multiple simultaneous unsuccessful login attempts to bypass the intended block counter, increasing the risk of brute-force attacks. This flaw could lead to unauthorized access if exploited, making it critical for organizations using Zabbix to prioritize patching or implementing additional security measures. System administrators and security teams should assess their exposure and take action to mitigate potential risks associated with this vulnerability.

CVE
CVE-2026-1199
Severity
LOW
CVSS
3.7
EPSS
0.16%

Original NVD Description

Zabbix API and Frontend login lockout mechanism has a flaw where several unsuccessful login requests are not properly counted towards the block counter if sent simultaneously, potentially allowing for more password guesses than intended.

Related CVEs

Other vulnerabilities affecting the same vendor(s)