Loading HuntDB...

Checkmk GmbH

2 Products 43 CVEs

CVE Severity Distribution (All Time)

Critical
0
High
15
Medium
14
Low
5

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 12 CVEs

Recent CVEs

View all
CVE-2024-38864 UNKNOWN 6 months, 3 weeks ago

Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p23, < 2.2.0p38 and <= 2.1.0p49 (EOL) allows a local attacker t…

CVE-2024-47094 UNKNOWN 7 months, 1 week ago

Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p22, <2.2.0p37, <2.1.0p50 (EOL) causes remote site secrets …

CVE-2024-38863 UNKNOWN 8 months, 4 weeks ago

Exposure of CSRF tokens in query parameters on specific requests in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35 and <2.1.0p48 could lead to …

CVE-2024-38862 UNKNOWN 8 months, 4 weeks ago

Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35, <2.1.0p48 and <=2.0.0p39 (EOL) causes SNMP …

CVE-2024-6747 MEDIUM 9 months ago

Information leakage in mknotifyd in Checkmk before 2.3.0p18, 2.2.0p36, 2.1.0p49 and in 2.0.0p39 (EOL) allows attacker to get potentially sensitive da…

CVE-2024-8606 UNKNOWN 9 months, 2 weeks ago

Bypass of two factor authentication in RestAPI in Checkmk < 2.3.0p16 and < 2.2.0p34 allows authenticated users to bypass two factor authentication

CVE-2024-38860 UNKNOWN 9 months, 3 weeks ago

Improper neutralization of input in Checkmk before versions 2.3.0p16 and 2.2.0p34 allows attackers to craft malicious links that can facilitate phish…

CVE-2024-6572 HIGH 10 months ago

Improper host key checking in active check 'Check SFTP Service' and special agent 'VNX quotas and filesystem' in Checkmk before Checkmk 2.3.0p15, 2.2…

CVE-2024-38858 UNKNOWN 10 months, 1 week ago

Improper neutralization of input in Checkmk before version 2.3.0p14 allows attackers to inject and run malicious scripts in the Robotmk logs view.

CVE-2024-38859 UNKNOWN 10 months, 2 weeks ago

XSS in the view page with the SLA column configured in Checkmk versions prior to 2.3.0p14, 2.2.0p33, 2.1.0p47 and 2.0.0 (EOL) allowed malicious users…