DLL Sideloading Vulnerability in Zabbix Agent for Windows
CVE-2026-59781

5.4MEDIUM

Key Information:

Vendor

Zabbix

Status
Vendor
CVE Published:
18 August 2026

What is CVE-2026-59781?

The Zabbix Agent for Windows has a vulnerability that occurs when it is installed in a custom directory without sufficient access permissions. This lack of verification allows unauthorized users to manipulate the installation directory, potentially leading to DLL sideloading attacks. If a malicious DLL is placed in the directory, it can be executed by the application, compromising system integrity. The updated installer now includes security measures to validate directory permissions and prompts for user confirmation when attempting to install in unsecured locations, thereby enhancing the overall security posture without disrupting existing user deployments.

Affected Version(s)

Zabbix 7.4.0 <= 7.4.12

Zabbix 7.0.0 <= 7.0.28

Zabbix 6.0.0 <= 6.0.47

References

CVSS V4

Score:
5.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Zabbix wants to thank Kazuma Matsumoto of GMO Cybersecurity by IERAE, Inc. for finding and reporting this issue.
.