CNNVD-202510-4239 Information

CNNVD ID

CNNVD-202510-4239

CVE-2025-39663

  • CNNVD Published: 2025-10-30

Description (Chinese)

Checkmk是Checkmk公司的一个 IT 监控平台。 Checkmk 2.4.0p14之前版本、2.3.0p39之前版本、2.2.0版本和2.1.0版本存在安全漏洞,该漏洞源于远程站点可注入恶意HTML代码,可能导致跨站脚本攻击。

Description (English)

Checkmk is an IT monitoring platform for Checkmk. Checkmk pre version 2.4.0p14, pre version 2.3.0p39, version 2.2.0 and version 2.1.0 have a security loophole, which stems from the fact that remote sites can be injected into malicious HTML codes and may result in cross-site script attacks.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Checkmk

Published

2025-10-30

Last Modified

2026-02-24

References

https://checkmk.com/werk/17998 https://github.com/sbaresearch/advisories/tree/82fd27e4570433464c30b35150b197db9a850f4e/2025/SBA-ADV-20250729-01_Checkmk_Cross_Site_Scripting

Patch

https://checkmk.com/werk/17998

Share on: