CVE-2024-28826 Information
May 31, 2024
cve
Description
Improper restriction of local upload and download paths in check_sftp in Checkmk before 2.3.0p4 2.2.0p27 2.1.0p44 and in Checkmk 2.0.0 (EOL) allows attackers with sufficient permissions to configure the check to read and write local files on the Checkmk site server.
Reference
https://checkmk.com/werk/15200
Share on: