VYPR
Unrated severityNVD Advisory· Published Dec 3, 2025· Updated Dec 3, 2025

Livestatus Injection in dynmaps

CVE-2025-39665

Description

User enumeration in Nagvis' Checkmk MultisiteAuth before version 1.9.48 allows an unauthenticated attacker to enumerate Checkmk usernames.

Affected products

2
  • Nagvis/Nagvisllm-fuzzy
    Range: <1.9.48
  • Nagvis/Nagvisv5
    Range: 1.9.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.