CVE-2025-32918
Improper neutralization of Livestatus command delimiters in autocomplete endpoint within the RestAPI of Checkmk versions <2.4.0p6, <2.3.0p35, <2.2.0p44, and 2.1.0 (EOL) allows an authenticated user to inject arbitrary Livestatus commands.
Vendor
Product
CWE
Yayın Tarihi
2025-07-04 08:15:25
Güncelleme
2025-08-22 13:29:48
Source Identifier
security@checkmk.com
KEV Date Added
-