VYPR

Vendor CVEs

Checkmk

All CVEs

127 total · sorted by risk
  • CVE-2022-48319MedFeb 20, 2023
    risk 0.42cvss 6.5epss 0.00

    Sensitive host secret disclosed in cmk-update-agent.log file in Tribe29's Checkmk <= 2.1.0p13, Checkmk <= 2.0.0p29, and all versions of Checkmk 1.6.0 (EOL) allows an attacker to gain access to the host secret through the unprotected agent updater log file.

  • CVE-2017-14955MedOct 2, 2017
    risk 0.42cvss 5.9epss 0.12

    Check_MK before 1.2.8p26 mishandles certain errors within the failed-login save feature because of a race condition, which allows remote attackers to obtain sensitive user information by reading a GUI crash report.

  • CVE-2025-39666HigApr 7, 2026
    risk 0.40cvss 7.3epss 0.00

    Local privilege escalation in Checkmk 2.2.0 (EOL), Checkmk 2.3.0 before 2.3.0p46, Checkmk 2.4.0 before 2.4.0p25, and Checkmk 2.5.0 (beta) before 2.5.0b3 allows a site user to escalate their privileges to root, by manipulating files in the site context that are processed when the…

  • CVE-2025-64998HigMar 24, 2026
    risk 0.40cvss 7.2epss 0.00

    Exposure of session signing secret in Checkmk <2.4.0p23, <2.3.0p45 and 2.2.0 allows an administrator of a remote site with config sync enabled to hijack sessions on the central site by forging session cookies.

  • CVE-2024-38860MedSep 17, 2024
    risk 0.40cvss 6.1epss 0.00

    Improper neutralization of input in Checkmk before versions 2.3.0p16 and 2.2.0p34 allows attackers to craft malicious links that can facilitate phishing attacks.

  • CVE-2024-38859MedAug 26, 2024
    risk 0.40cvss 6.1epss 0.00

    XSS in the view page with the SLA column configured in Checkmk versions prior to 2.3.0p14, 2.2.0p33, 2.1.0p47 and 2.0.0 (EOL) allowed malicious users to execute arbitrary scripts by injecting HTML elements into the SLA column title. These scripts could be executed when the view…

  • CVE-2023-22309MedApr 20, 2023
    risk 0.40cvss 6.1epss 0.00

    Reflective Cross-Site-Scripting in Webconf in Tribe29 Checkmk Appliance before 1.6.4.

  • CVE-2021-40906MedMar 25, 2022
    risk 0.40cvss 6.1epss 0.01

    CheckMK Raw Edition software (versions 1.5.0 to 1.6.0) does not sanitise the input of a web service parameter that is in an unauthenticated zone. This Reflected XSS allows an attacker to open a backdoor on the device with HTML content and interpreted by the browser (such as…

  • CVE-2022-24564MedFeb 21, 2022
    risk 0.40cvss 6.1epss 0.01

    Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability. While creating or editing a user attribute, the Help Text is subject to HTML injection, which can be triggered for editing a user.

  • CVE-2024-28833MedJun 10, 2024
    risk 0.38cvss 5.9epss 0.00

    Improper restriction of excessive authentication attempts with two factor authentication methods in Checkmk 2.3 before 2.3.0p6 facilitates brute-forcing of second factor mechanisms.

  • CVE-2024-28825MedApr 24, 2024
    risk 0.38cvss 5.9epss 0.01

    Improper restriction of excessive authentication attempts on some authentication methods in Checkmk before 2.3.0b5 (beta), 2.2.0p26, 2.1.0p43, and in Checkmk 2.0.0 (EOL) facilitates password brute-forcing.

  • CVE-2025-32915MedMay 22, 2025
    risk 0.36cvss 5.5epss 0.00

    Packages downloaded by Checkmk's automatic agent updates on Linux and Solaris have incorrect permissions in Checkmk < 2.4.0p1, < 2.3.0p32, < 2.2.0p42 and <= 2.1.0p49 (EOL). This allows a local attacker to read sensitive data.

  • CVE-2024-47094MedNov 29, 2024
    risk 0.36cvss 5.5epss 0.00

    Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p22, <2.2.0p37, <2.1.0p50 (EOL) causes remote site secrets to be written to web log files accessible to local site users.

  • CVE-2023-22307MedApr 18, 2023
    risk 0.36cvss 5.5epss 0.00

    Sensitive data exposure in Webconf in Tribe29 Checkmk Appliance before 1.6.4 allows local attacker to retrieve passwords via reading log files.

  • CVE-2022-48317MedFeb 20, 2023
    risk 0.36cvss 5.6epss 0.00

    Expired sessions were not securely terminated in the RestAPI for Tribe29's Checkmk <= 2.1.0p10 and Checkmk <= 2.0.0p28 allowing an attacker to use expired session tokens when communicating with the RestAPI.

  • CVE-2014-0243MedJul 19, 2018
    risk 0.36cvss 5.5epss 0.01

    Check_MK through 1.2.5i2p1 allows local users to read arbitrary files via a symlink attack to a file in /var/lib/check_mk_agent/job.

  • CVE-2026-3103MedMar 4, 2026
    risk 0.35cvss 5.4epss 0.00

    A logic error in the remove_password() function in Checkmk GmbH's Checkmk versions <2.4.0p23, <2.3.0p43, and 2.2.0 (EOL) allows a low-privileged user to cause data loss.

  • CVE-2025-64999MedFeb 26, 2026
    risk 0.35cvss 5.4epss 0.00

    Improper neutralization of input in Checkmk versions 2.4.0 before 2.4.0p22, and 2.3.0 before 2.3.0p43 allows an attacker that can manipulate a host's check output to inject malicious JavaScript into the Synthetic Monitoring HTML logs, which can then be accessed via a crafted…

  • CVE-2025-58122MedNov 18, 2025
    risk 0.35cvss 5.4epss 0.00

    Insufficient permission validation in Checkmk 2.4.0 before version 2.4.0p16 allows low-privileged users to modify notification parameters via the REST API, which could lead to unauthorized actions or information disclosure.

  • CVE-2025-58121MedNov 18, 2025
    risk 0.35cvss 5.4epss 0.00

    Insufficient permission validation on multiple REST API endpoints in Checkmk 2.2.0, 2.3.0, and 2.4.0 before version 2.4.0p16 allows low-privileged users to perform unauthorized actions or obtain sensitive information

  • CVE-2025-39664MedOct 9, 2025
    risk 0.35cvss 6.5epss 0.01

    Insufficient escaping in the report scheduler within Checkmk <2.4.0p13, <2.3.0p38, <2.2.0p46 and 2.1.0 (EOL) allows authenticated attackers to define the storage location of report file pairs beyond their intended root directory.

  • CVE-2024-13722MedFeb 4, 2025
    risk 0.35cvss 5.4epss 0.01

    The "NagVis" component within Checkmk is vulnerable to reflected cross-site scripting. An attacker can craft a malicious link that will execute arbitrary JavaScript in the context of the browser once clicked. The attack can be performed on both authenticated and unauthenticated…

  • CVE-2024-28831MedJun 25, 2024
    risk 0.35cvss 5.4epss 0.00

    Stored XSS in some confirmation pop-ups in Checkmk before versions 2.3.0p7 and 2.2.0p28 allows Checkmk users to execute arbitrary scripts by injecting HTML elements into some user input fields that are shown in a confirmation pop-up.

  • CVE-2023-23548MedAug 1, 2023
    risk 0.35cvss 5.4epss 0.00

    Reflected XSS in business intelligence in Checkmk <2.2.0p8, <2.1.0p32, <2.0.0p38, <=1.6.0p30.

  • CVE-2022-48320MedFeb 20, 2023
    risk 0.35cvss 5.4epss 0.00

    Cross-site Request Forgery (CSRF) in Tribe29's Checkmk <= 2.1.0p17, Checkmk <= 2.0.0p31, and all versions of Checkmk 1.6.0 (EOL) allow an attacker to add new visual elements to multiple pages.

  • CVE-2022-24566MedFeb 24, 2022
    risk 0.35cvss 5.4epss 0.01

    In Checkmk <=2.0.0p19 fixed in 2.0.0p20 and Checkmk <=1.6.0p27 fixed in 1.6.0p28, the title of a Predefined condition is not properly escaped when shown as condition, which can result in Cross Site Scripting (XSS).

  • CVE-2022-24565MedFeb 24, 2022
    risk 0.35cvss 5.4epss 0.01

    Checkmk <=2.0.0p19 Fixed in 2.0.0p20 and Checkmk <=1.6.0p27 Fixed in 1.6.0p28 are affected by a Cross Site Scripting (XSS) vulnerability. The Alias of a site was not properly escaped when shown as condition for notifications.

  • CVE-2021-36563MedJul 26, 2021
    risk 0.35cvss 5.4epss 0.02

    The CheckMK management web console (versions 1.5.0 to 2.0.0) does not sanitise user input in various parameters of the WATO module. This allows an attacker to open a backdoor on the device with HTML content and interpreted by the browser (such as JavaScript or other client-side…

  • CVE-2026-33457MedApr 10, 2026
    risk 0.34cvss 6.3epss 0.00

    Livestatus injection in the prediction graph page in Checkmk <2.5.0b4, <2.4.0p26, and <2.3.0p47 allows an authenticated user to inject arbitrary Livestatus commands via a crafted service name parameter due to insufficient sanitization of the service description value.

  • CVE-2026-33455MedApr 10, 2026
    risk 0.34cvss 6.3epss 0.00

    Livestatus injection in the monitoring quicksearch in Checkmk <2.5.0b4 allows an authenticated attacker to inject livestatus commands via the search query due to insufficient input sanitization in search filter plugins.

  • CVE-2026-24095MedFeb 9, 2026
    risk 0.34cvss epss 0.00

    Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0p21, 2.3.0 before 2.3.0p43, and 2.2.0 (EOL) allows users with the "Use WATO" permission to access the "Analyze configuration" page by directly navigating to its URL, bypassing the intended "Access analyze…

  • CVE-2025-65000MedDec 18, 2025
    risk 0.34cvss 5.3epss 0.00

    SSH private keys of the "Remote alert handlers (Linux)" rule were exposed in the rule page's HTML source in Checkmk <= 2.4.0p18 and all versions of Checkmk 2.3.0. This potentially allowed unauthorized triggering of predefined alert handlers on hosts where the handler was…

  • CVE-2025-3506MedMay 8, 2025
    risk 0.34cvss 5.3epss 0.00

    Files to be deployed with agents are accessible without authentication in Checkmk 2.1.0, Checkmk 2.2.0, Checkmk 2.3.0 and <Checkmk 2.4.0b6 allows attacker to access files that could contain secrets.

  • CVE-2025-2596MedMar 26, 2025
    risk 0.34cvss 5.3epss 0.00

    Session logout could be overwritten in Checkmk GmbH's Checkmk versions <2.3.0p30, <2.2.0p41, and 2.1.0p49 (EOL)

  • CVE-2024-6747MedOct 10, 2024
    risk 0.34cvss 5.3epss 0.00

    Information leakage in mknotifyd in Checkmk before 2.3.0p18, 2.2.0p36, 2.1.0p49 and in 2.0.0p39 (EOL) allows attacker to get potentially sensitive data

  • CVE-2024-6163MedJul 8, 2024
    risk 0.34cvss 5.3epss 0.01

    Certain http endpoints of Checkmk in Checkmk < 2.3.0p10 < 2.2.0p31, < 2.1.0p46, <= 2.0.0p39 allows remote attacker to bypass authentication and access data

  • CVE-2022-48318MedFeb 20, 2023
    risk 0.34cvss 5.3epss 0.00

    No authorisation controls in the RestAPI documentation for Tribe29's Checkmk <= 2.1.0p13 and Checkmk <= 2.0.0p29 which may lead to unintended information disclosure through automatically generated user specific tags within Rest API documentation.

  • CVE-2024-38858MedSep 2, 2024
    risk 0.33cvss 6.1epss 0.00

    Improper neutralization of input in Checkmk before version 2.3.0p14 allows attackers to inject and run malicious scripts in the Robotmk logs view.

  • CVE-2025-58127MedAug 28, 2025
    risk 0.31cvss 4.8epss 0.00

    Improper Certificate Validation in Checkmk Exchange plugin Dell Powerscale allows attackers in MitM position to intercept traffic.

  • CVE-2025-58126MedAug 28, 2025
    risk 0.31cvss 4.8epss 0.00

    Improper Certificate Validation in Checkmk Exchange plugin VMware vSAN allows attackers in MitM position to intercept traffic.

  • CVE-2025-58125MedAug 28, 2025
    risk 0.31cvss 4.8epss 0.00

    Improper Certificate Validation in Checkmk Exchange plugin Freebox v6 agent allows attackers in MitM position to intercept traffic.

  • CVE-2025-58124MedAug 28, 2025
    risk 0.31cvss 4.8epss 0.00

    Improper Certificate Validation in Checkmk Exchange plugin check-mk-api allows attackers in MitM position to intercept traffic.

  • CVE-2025-58123MedAug 28, 2025
    risk 0.31cvss 4.8epss 0.00

    Improper Certificate Validation in Checkmk Exchange plugin BGP Monitoring allows attackers in MitM position to intercept traffic.

  • CVE-2024-28832MedJun 25, 2024
    risk 0.31cvss 4.8epss 0.00

    Stored XSS in the Crash Report page in Checkmk before versions 2.3.0p7, 2.2.0p28, 2.1.0p45, and 2.0.0 (EOL) allows users with permission to change Global Settings to execute arbitrary scripts by injecting HTML elements into the Crash Report URL in the Global Settings.

  • CVE-2024-2380MedApr 5, 2024
    risk 0.30cvss 4.6epss 0.00

    Stored XSS in graph rendering in Checkmk <2.3.0b4.

  • CVE-2025-64996MedNov 18, 2025
    risk 0.29cvss 4.4epss 0.00

    In Checkmk versions prior to 2.4.0p16, 2.3.0p41, and all versions of 2.2.0 and older, the mk_inotify plugin creates world-readable and writable files, allowing any local user on the system to read the plugin's output and manipulate it, potentially leading to unauthorized access…

  • CVE-2024-38862MedOct 14, 2024
    risk 0.29cvss 4.4epss 0.00

    Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35, <2.1.0p48 and <=2.0.0p39 (EOL) causes SNMP and IMPI secrets of host and folder properties to be written to audit log files accessible to administrators.

  • CVE-2023-31207MedMay 2, 2023
    risk 0.29cvss 4.4epss 0.00

    Transmission of credentials within query parameters in Checkmk <= 2.1.0p26, <= 2.0.0p35, and <= 2.2.0b6 (beta) may cause the automation user's secret to be written to the site Apache access log.

  • CVE-2026-8833MedJun 8, 2026
    risk 0.28cvss 5.4epss 0.00

    Improper neutralization of HTML-encoded characters in the URL validation function in Checkmk <2.5.0p5, <2.4.0p31, <2.3.0p48, and all 2.2.0 versions allows an authenticated user to bypass URL validation and inject malicious URLs such as javascript: URIs, resulting in cross-site…

  • CVE-2026-7186MedJun 8, 2026
    risk 0.28cvss 5.4epss 0.00

    Stored cross-site scripting in the URL dashboard widget in Checkmk <2.5.0p5, <2.4.0p31, <2.3.0p48, and all 2.2.0 versions allows a user with dashboard editing permissions to store a URL with a dangerous URI scheme such as javascript: that executes scripts in other users'…