CVE-2022-24566
24.02.2022, 15:15
In Checkmk <=2.0.0p19 fixed in 2.0.0p20 and Checkmk <=1.6.0p27 fixed in 1.6.0p28, the title of a Predefined condition is not properly escaped when shown as condition, which can result in Cross Site Scripting (XSS).
Vendor | Product | Version |
---|---|---|
checkmk | checkmk | 1.6.0 |
checkmk | checkmk | 1.6.0:b1 |
checkmk | checkmk | 1.6.0:b10 |
checkmk | checkmk | 1.6.0:b12 |
checkmk | checkmk | 1.6.0:b3 |
checkmk | checkmk | 1.6.0:b4 |
checkmk | checkmk | 1.6.0:b5 |
checkmk | checkmk | 1.6.0:b9 |
checkmk | checkmk | 1.6.0:p1 |
checkmk | checkmk | 1.6.0:p10 |
checkmk | checkmk | 1.6.0:p11 |
checkmk | checkmk | 1.6.0:p12 |
checkmk | checkmk | 1.6.0:p13 |
checkmk | checkmk | 1.6.0:p14 |
checkmk | checkmk | 1.6.0:p15 |
checkmk | checkmk | 1.6.0:p16 |
checkmk | checkmk | 1.6.0:p19 |
checkmk | checkmk | 1.6.0:p2 |
checkmk | checkmk | 1.6.0:p20 |
checkmk | checkmk | 1.6.0:p21 |
checkmk | checkmk | 1.6.0:p22 |
checkmk | checkmk | 1.6.0:p23 |
checkmk | checkmk | 1.6.0:p24 |
checkmk | checkmk | 1.6.0:p25 |
checkmk | checkmk | 1.6.0:p26 |
checkmk | checkmk | 1.6.0:p27 |
checkmk | checkmk | 2.0.0 |
checkmk | checkmk | 2.0.0:b1 |
checkmk | checkmk | 2.0.0:b2 |
checkmk | checkmk | 2.0.0:b3 |
checkmk | checkmk | 2.0.0:b4 |
checkmk | checkmk | 2.0.0:b5 |
checkmk | checkmk | 2.0.0:b6 |
checkmk | checkmk | 2.0.0:b7 |
checkmk | checkmk | 2.0.0:b8 |
checkmk | checkmk | 2.0.0:i1 |
checkmk | checkmk | 2.0.0:p1 |
checkmk | checkmk | 2.0.0:p10 |
checkmk | checkmk | 2.0.0:p11 |
checkmk | checkmk | 2.0.0:p12 |
checkmk | checkmk | 2.0.0:p13 |
checkmk | checkmk | 2.0.0:p14 |
checkmk | checkmk | 2.0.0:p15 |
checkmk | checkmk | 2.0.0:p16 |
checkmk | checkmk | 2.0.0:p17 |
checkmk | checkmk | 2.0.0:p18 |
checkmk | checkmk | 2.0.0:p19 |
𝑥
= Vulnerable software versions