CVE-2025-32918 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper neutralization of Livestatus command delimiters in autocomplete endpoint within the RestAPI of Checkmk versions
Medium CVSS: 5.3

CVE-2025-32918

Improper neutralization of Livestatus command delimiters in autocomplete endpoint within the RestAPI of Checkmk versions <2.4.0p6, <2.3.0p35, <2.2.0p44, and 2.1.0 (EOL) allows an authenticated user to inject arbitrary Livestatus commands.
Vendor
Checkmk
Product
Checkmk
CWE
CWE-140
Yayın Tarihi
2025-07-04 08:15:25
Güncelleme
2025-08-22 13:29:48
Source Identifier
security@checkmk.com
KEV Date Added
-

Kategoriler

Referanslar