Vendorstribe29checkmkall versions
Vulnerabilities

tribe29 checkmk

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

14CVEs
CVE-2021-40905
The web management console of CheckMK Enterprise Edition (versions 1.5.0 to 2.0.0p9) does not properly sanitise the uploading of ".mkp" files, which are Extension Packages, making remote code execution possible. Successful exploitation requires access to the web management interface, either with valid credentials or with a hijacked session of a user with administrator role. NOTE: the vendor states that this is the intended behavior: admins are supposed to be able to execute code in this manner.
Published 2022-03-25 · Modified
8.8EPSS 0.030
CVE-2023-31209
Command injection via active checks and REST API
Published 2023-08-10 · Modified
8.8EPSS 0.011
CVE-2023-31208
Livestatus command injection in RestAPI
Published 2023-05-17 · Modified
8.8EPSS 0.010
CVE-2023-22294
Privilege escalation in Checkmk Appliance
Published 2023-04-18 · Modified
8.8EPSS 0.007
CVE-2023-31211
Disabled automation users could still authenticate
Published 2024-01-12 · Modified
8.8EPSS 0.005
CVE-2023-6735
Privilege escalation in mk_tsm
Published 2024-01-12 · Modified
8.8EPSS 0.003
CVE-2023-6740
Privilege escalation in jar_signature
Published 2024-01-12 · Modified
8.8EPSS 0.002
CVE-2022-31258
In Checkmk before 1.6.0p29, 2.x before 2.0.0p25, and 2.1.x before 2.1.0b10, a site user can escalate to root by editing an OMD hook symlink.
Published 2022-05-20 · Modified
8.2EPSS 0.004
CVE-2023-0284
Improper validation of LDAP user IDs
Published 2023-01-24 · Modified
8.1EPSS 0.009
CVE-2022-33912
A permission issue affects users that deployed the shipped version of the Checkmk Debian package. Packages created by the agent bakery (enterprise editions only) were not affected. Using the shipped version of the agents, the maintainer scripts located at /var/lib/dpkg/info/ will be owned by the user and the group with ID 1001. If such a user exists on the system, they can change the content of these files (which are then executed by root). This leads to a local privilege escalation on the monitored host. Version 1.6 through 1.6.9p29, version 2.0 through 2.0.0p26, version 2.1 through 2.1.0p3, and version 2.2.0i1 are affected.
Published 2022-06-17 · Modified
7.8EPSS 0.002
CVE-2021-40906
CheckMK Raw Edition software (versions 1.5.0 to 1.6.0) does not sanitise the input of a web service parameter that is in an unauthenticated zone. This Reflected XSS allows an attacker to open a backdoor on the device with HTML content and interpreted by the browser (such as JavaScript or other client-side scripts) or to steal the session cookies of a user who has previously authenticated via a man in the middle. Successful exploitation requires access to the web service resource without authentication.
Published 2022-03-25 · Modified
6.1EPSS 0.010
CVE-2023-22288
Email HTML Injection
Published 2023-03-20 · Modified
5.4EPSS 0.004
CVE-2023-1768
Symmetric agent data encryption fails silently
Published 2023-04-04 · Modified
5.3EPSS 0.009
CVE-2023-22348
Reading host_configs does not honour contact groups
Published 2023-05-17 · Modified
4.3EPSS 0.006