8.8
CVSSv3

CVE-2022-46302

Published: 20/04/2023 Updated: 04/05/2023
CVSS v3 Base Score: 8.8 | Impact Score: 6 | Exploitability Score: 2
VMScore: 0

Vulnerability Summary

Broad access controls could allow site users to directly interact with the system Apache installation when providing the reverse proxy configurations for Tribe29's Checkmk <= 2.1.0p6, Checkmk <= 2.0.0p27, and all versions of Checkmk 1.6.0 (EOL) allowing an malicious user to perform remote code execution with root privileges on the underlying host.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tribe29 checkmk 1.6.0

tribe29 checkmk 2.0.0

tribe29 checkmk 2.1.0