CVE-2022-31258

In Checkmk before 1.6.0p29, 2.x before 2.0.0p25, and 2.1.x before 2.1.0b10, a site user can escalate to root by editing an OMD hook symlink.
Link Following
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.2 HIGH
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
mitreCNA
8.2 HIGH
LOCAL
LOW
HIGH
CVSS:3.1/AC:L/AV:L/A:H/C:H/I:H/PR:H/S:C/UI:N
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 24%
VendorProductVersion
checkmkcheckmk
𝑥
< 1.6.0
checkmkcheckmk
1.6.0:b1
checkmkcheckmk
1.6.0:b10
checkmkcheckmk
1.6.0:b12
checkmkcheckmk
1.6.0:b3
checkmkcheckmk
1.6.0:b4
checkmkcheckmk
1.6.0:b5
checkmkcheckmk
1.6.0:b9
checkmkcheckmk
1.6.0:p1
checkmkcheckmk
1.6.0:p10
checkmkcheckmk
1.6.0:p11
checkmkcheckmk
1.6.0:p12
checkmkcheckmk
1.6.0:p13
checkmkcheckmk
1.6.0:p14
checkmkcheckmk
1.6.0:p15
checkmkcheckmk
1.6.0:p16
checkmkcheckmk
1.6.0:p19
checkmkcheckmk
1.6.0:p2
checkmkcheckmk
1.6.0:p20
checkmkcheckmk
1.6.0:p21
checkmkcheckmk
1.6.0:p22
checkmkcheckmk
1.6.0:p23
checkmkcheckmk
1.6.0:p24
checkmkcheckmk
1.6.0:p25
checkmkcheckmk
1.6.0:p26
checkmkcheckmk
1.6.0:p27
checkmkcheckmk
1.6.0:p28
checkmkcheckmk
1.6.0:p3
checkmkcheckmk
1.6.0:p4
checkmkcheckmk
1.6.0:p5
checkmkcheckmk
1.6.0:p6
checkmkcheckmk
1.6.0:p7
checkmkcheckmk
1.6.0:p8
checkmkcheckmk
1.6.0:p9
checkmkcheckmk
2.0.0
checkmkcheckmk
2.0.0:b1
checkmkcheckmk
2.0.0:b2
checkmkcheckmk
2.0.0:b3
checkmkcheckmk
2.0.0:b4
checkmkcheckmk
2.0.0:b5
checkmkcheckmk
2.0.0:b6
checkmkcheckmk
2.0.0:b7
checkmkcheckmk
2.0.0:b8
checkmkcheckmk
2.0.0:i1
checkmkcheckmk
2.0.0:p1
checkmkcheckmk
2.0.0:p10
checkmkcheckmk
2.0.0:p11
checkmkcheckmk
2.0.0:p12
checkmkcheckmk
2.0.0:p13
checkmkcheckmk
2.0.0:p14
checkmkcheckmk
2.0.0:p15
checkmkcheckmk
2.0.0:p16
checkmkcheckmk
2.0.0:p17
checkmkcheckmk
2.0.0:p18
checkmkcheckmk
2.0.0:p19
checkmkcheckmk
2.0.0:p2
checkmkcheckmk
2.0.0:p20
checkmkcheckmk
2.0.0:p21
checkmkcheckmk
2.0.0:p22
checkmkcheckmk
2.0.0:p23
checkmkcheckmk
2.0.0:p24
checkmkcheckmk
2.0.0:p3
checkmkcheckmk
2.0.0:p4
checkmkcheckmk
2.0.0:p5
checkmkcheckmk
2.0.0:p6
checkmkcheckmk
2.0.0:p7
checkmkcheckmk
2.0.0:p8
checkmkcheckmk
2.0.0:p9
checkmkcheckmk
2.1.0:b1
checkmkcheckmk
2.1.0:b2
checkmkcheckmk
2.1.0:b3
checkmkcheckmk
2.1.0:b4
checkmkcheckmk
2.1.0:b5
checkmkcheckmk
2.1.0:b6
checkmkcheckmk
2.1.0:b7
checkmkcheckmk
2.1.0:b8
checkmkcheckmk
2.1.0:b9
tribe29checkmk
1.6.0b10:b10
tribe29checkmk
1.6.0b11:b11
tribe29checkmk
1.6.0p10:p10
tribe29checkmk
1.6.0p11:p11
tribe29checkmk
1.6.0p12:p12
tribe29checkmk
1.6.0p13:p13
tribe29checkmk
1.6.0p14:p14
tribe29checkmk
1.6.0p15:p15
tribe29checkmk
1.6.0p16:p16
tribe29checkmk
1.6.0p17:p17
tribe29checkmk
1.6.0p18:p18
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
check-mk
bionic
not-affected