Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hxwv-vc7p-p66g

Опубликовано: 10 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.1
CVSS3: 7.6

Описание

Livestatus injection in the notification test mode in Checkmk <2.5.0b4 and <2.4.0p26 allows an authenticated user with access to the notification test page to inject arbitrary Livestatus commands via a crafted service description.

Livestatus injection in the notification test mode in Checkmk <2.5.0b4 and <2.4.0p26 allows an authenticated user with access to the notification test page to inject arbitrary Livestatus commands via a crafted service description.

EPSS

Процентиль: 10%
0.00196
Низкий

5.1 Medium

CVSS4

7.6 High

CVSS3

Дефекты

CWE-140

Связанные уязвимости

CVSS3: 7.6
ubuntu
4 месяца назад

Livestatus injection in the notification test mode in Checkmk <2.5.0b4 and <2.4.0p26 allows an authenticated user with access to the notification test page to inject arbitrary Livestatus commands via a crafted service description.

CVSS3: 7.6
nvd
4 месяца назад

Livestatus injection in the notification test mode in Checkmk <2.5.0b4 and <2.4.0p26 allows an authenticated user with access to the notification test page to inject arbitrary Livestatus commands via a crafted service description.

CVSS3: 7.6
debian
4 месяца назад

Livestatus injection in the notification test mode in Checkmk <2.5.0b4 ...

EPSS

Процентиль: 10%
0.00196
Низкий

5.1 Medium

CVSS4

7.6 High

CVSS3

Дефекты

CWE-140