Page 6 of 37 results (0.006 seconds)

CVSS: 3.5EPSS: 0%CPEs: 119EXPL: 0

Cross-site Request Forgery (CSRF) in Checkmk < 2.2.0p15, < 2.1.0p37, <= 2.0.0p39 allow an authenticated attacker to delete user-messages for individual users. Cross-site Request Forgery (CSRF) en Checkmk &lt; 2.2.0p15, &lt; 2.1.0p37, &lt;= 2.0.0p39 permite a un atacante autenticado eliminar mensajes de usuario para usuarios individuales. • https://checkmk.com/werk/16224 • CWE-352: Cross-Site Request Forgery (CSRF) •

CVSS: 8.8EPSS: 0%CPEs: 119EXPL: 0

Improper neutralization of livestatus command delimiters in ajax_search in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.2.0p15 allows arbitrary livestatus command execution for authorized users. La neutralización inadecuada de los delimitadores de comandos de estado de vida en ajax_search en Checkmk &lt;= 2.0.0p39, &lt; 2.1.0p37 y &lt; 2.2.0p15 permite la ejecución arbitraria de comandos de estado de vida para usuarios autorizados. • https://checkmk.com/werk/16221 • CWE-140: Improper Neutralization of Delimiters •

CVSS: 8.8EPSS: 0%CPEs: 119EXPL: 0

Improper neutralization of livestatus command delimiters in the availability timeline in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.2.0p15 allows arbitrary livestatus command execution for authorized users. La neutralización inadecuada de los delimitadores de comandos de estado de vida en la línea de tiempo de disponibilidad en Checkmk &lt;= 2.0.0p39, &lt; 2.1.0p37 y &lt; 2.2.0p15 permite la ejecución arbitraria de comandos de estado de vida para usuarios autorizados. • https://checkmk.com/werk/16221 • CWE-140: Improper Neutralization of Delimiters •

CVSS: 2.7EPSS: 0%CPEs: 118EXPL: 0

Improper Input Validation in Checkmk <2.2.0p15, <2.1.0p37, <=2.0.0p39 allows priviledged attackers to cause partial denial of service of the UI via too long hostnames. La validación de entrada inadecuada en Checkmk &lt;2.2.0p15, &lt;2.1.0p37, &lt;=2.0.0p39 permite a atacantes privilegiados provocar una denegación parcial de servicio de la interfaz de usuario a través de nombres de host demasiado largos. • https://checkmk.com/werk/16219 • CWE-20: Improper Input Validation CWE-1284: Improper Validation of Specified Quantity in Input •

CVSS: 8.8EPSS: 0%CPEs: 102EXPL: 0

Improper neutralization of active check command arguments in Checkmk < 2.1.0p32, < 2.0.0p38, < 2.2.0p4 leads to arbitrary command execution for authenticated users. • https://checkmk.com/werk/15194 • CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •