CVE-2025-64999 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper neutralization of input in Checkmk versions 2.4.0 before 2.4.0p22, and 2.3.0 before 2.3.0p43 allows an attacker that can manipulate a host's check outp…
High CVSS: 7.3

CVE-2025-64999

Improper neutralization of input in Checkmk versions 2.4.0 before 2.4.0p22, and 2.3.0 before 2.3.0p43 allows an attacker that can manipulate a host's check output to inject malicious JavaScript into the Synthetic Monitoring HTML logs, which can then be accessed via a crafted phishing link.
Vendor
Checkmk
Product
Checkmk
CWE
CWE-79
Yayın Tarihi
2026-02-26 11:16:02
Güncelleme
2026-03-05 15:16:10
Source Identifier
security@checkmk.com
KEV Date Added
-

Kategoriler

Referanslar