📦 Checkmk

by Checkmk

🔍 What is Checkmk?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-46836

CRITICAL CVSS 9.1 Feb 20, 2023

This CVE describes a PHP code injection vulnerability in Checkmk's watolib auth.php and hosttags.php components. Attackers can inject and execute arbitrary PHP code when vulnerable components are acce...

CVE-2025-39663

HIGH CVSS 8.4 Oct 30, 2025

A Cross-Site Scripting (XSS) vulnerability in Checkmk's distributed monitoring allows a compromised remote monitoring site to inject malicious HTML/JavaScript into service outputs displayed on the cen...

CVE-2025-32919

HIGH CVSS 7.8 Oct 9, 2025

This vulnerability allows local privilege escalation on Windows systems running affected Checkmk Windows Agent versions. An attacker with local access can exploit insecure temporary directory handling...

CVE-2025-32918

HIGH CVSS 8.8 Jul 4, 2025

This vulnerability allows authenticated users to inject arbitrary Livestatus commands through the RestAPI autocomplete endpoint in Checkmk. Attackers could execute unauthorized commands, potentially c...

CVE-2025-2092

HIGH CVSS 7.5 Apr 22, 2025

This vulnerability causes Checkmk to write remote site authentication secrets to log files accessible to administrators. Attackers with access to these logs could obtain credentials to compromise conn...

CVE-2025-1075

HIGH CVSS 7.5 Feb 19, 2025

This vulnerability in Checkmk monitoring software causes LDAP authentication credentials to be written to Apache error log files. Administrators with access to these log files can potentially read sen...

CVE-2024-38863

HIGH CVSS 7.5 Oct 14, 2024

This vulnerability exposes CSRF tokens in URL query parameters in Checkmk monitoring software, allowing attackers to steal these tokens. Attackers can then use stolen tokens to perform Cross-Site Requ...

CVE-2024-8606

HIGH CVSS 8.8 Sep 23, 2024

This vulnerability allows authenticated users in Checkmk monitoring systems to bypass two-factor authentication (2FA) via the REST API. Attackers with valid credentials can access protected resources ...

CVE-2024-28829

HIGH CVSS 7.8 Aug 20, 2024

This vulnerability in the mk_informix Checkmk agent plugin allows local users to escalate privileges due to least privilege violations and reliance on untrusted inputs. It affects Checkmk installation...

CVE-2024-28827

HIGH CVSS 8.8 Jul 10, 2024

This vulnerability allows a local attacker to escalate privileges to SYSTEM level on Windows systems running vulnerable Checkmk Windows Agent versions. The issue stems from incorrect permissions on th...

CVE-2024-0638

HIGH CVSS 8.2 Mar 22, 2024

This CVE describes a local privilege escalation vulnerability in Checkmk agent plugins mk_oracle, mk_oracle.ps1, and mk_oracle_crs. Local users can exploit improper privilege handling to gain elevated...

CVE-2024-0670

HIGH CVSS 8.8 Mar 11, 2024

This vulnerability allows local users on Windows systems running vulnerable Checkmk agent plugins to escalate privileges to SYSTEM level. It affects Checkmk monitoring installations where the Windows ...

CVE-2023-31211

HIGH CVSS 8.8 Jan 12, 2024

This vulnerability in Checkmk allows attackers to use locked credentials due to insufficient authentication flow. Attackers could potentially gain unauthorized access to monitoring systems. Affected a...

CVE-2023-6735

HIGH CVSS 8.8 Jan 12, 2024

This vulnerability allows local users on systems running vulnerable Checkmk versions to escalate their privileges to root/admin level. It affects Checkmk installations where the mk_tsm agent plugin is...

CVE-2023-6156

HIGH CVSS 7.6 Nov 22, 2023

This vulnerability allows authorized users of Checkmk to execute arbitrary livestatus commands by exploiting improper neutralization of command delimiters in the availability timeline. Attackers with ...

CVE-2023-31208

HIGH CVSS 8.3 May 17, 2023

This vulnerability allows authorized users of Checkmk's RestAPI to execute arbitrary livestatus commands due to improper input sanitization. Attackers with valid credentials can potentially execute co...

CVE-2022-46302

HIGH CVSS 8.8 Apr 20, 2023

This vulnerability allows authenticated Checkmk users to directly interact with the underlying Apache installation through reverse proxy configurations, enabling remote code execution with root privil...

CVE-2022-46303

HIGH CVSS 8.0 Feb 20, 2023

This vulnerability allows authenticated users with User Management permissions (and LDAP administrators in some configurations) to inject arbitrary commands into SMS notification functionality in Chec...

CVE-2021-40904

HIGH CVSS 8.8 Mar 25, 2022

CVE-2021-40904 allows remote code execution through the CheckMK web management console by exploiting a misconfiguration in the default Dokuwiki installation. Attackers with administrative access (vali...

CVE-2025-65000

MEDIUM CVSS 5.3 Dec 18, 2025

This vulnerability exposes SSH private keys in the HTML source of Checkmk's remote alert handler rule pages. Attackers who can access these pages could trigger unauthorized alert handlers on monitored...

CVE-2025-64997

MEDIUM CVSS 6.5 Dec 18, 2025

This vulnerability allows low-privileged users in Checkmk monitoring systems to access agent information through the REST API without proper authorization. It affects Checkmk versions before 2.4.0p17 ...

CVE-2025-58121

MEDIUM CVSS 5.4 Nov 18, 2025

This vulnerability allows low-privileged users in Checkmk to bypass permission checks on REST API endpoints, enabling unauthorized actions or access to sensitive information. It affects Checkmk versio...

CVE-2025-32915

MEDIUM CVSS 5.5 May 22, 2025

This vulnerability allows local attackers on Linux and Solaris systems to read sensitive data from Checkmk agent update packages due to incorrect file permissions. It affects Checkmk installations wit...

CVE-2025-2596

MEDIUM CVSS 5.3 Mar 26, 2025

This vulnerability in Checkmk allows attackers to bypass session logout mechanisms, potentially maintaining unauthorized access to monitoring systems. It affects Checkmk versions before 2.3.0p30, 2.2....

CVE-2024-47094

MEDIUM CVSS 5.5 Nov 29, 2024

This vulnerability in Checkmk monitoring software causes remote site secrets to be written to web log files accessible to local site users. Attackers with local access can read sensitive credentials f...

CVE-2024-6163

MEDIUM CVSS 5.3 Jul 8, 2024

This authentication bypass vulnerability in Checkmk allows remote attackers to access HTTP endpoints without proper credentials, potentially exposing sensitive monitoring data. It affects Checkmk vers...

CVE-2024-28832

MEDIUM CVSS 4.8 Jun 25, 2024

This vulnerability allows authenticated users with Global Settings permissions to inject malicious HTML/JavaScript into the Crash Report URL field, creating stored cross-site scripting (XSS) attacks. ...