CVE-2022-48319
20.02.2023, 17:15
Sensitive host secret disclosed in cmk-update-agent.log file in Tribe29's Checkmk <= 2.1.0p13, Checkmk <= 2.0.0p29, and all versions of Checkmk 1.6.0 (EOL) allows an attacker to gain access to the host secret through the unprotected agent updater log file.Enginsight
Vendor | Product | Version |
---|---|---|
checkmk | checkmk | 2.1.0 |
checkmk | checkmk | 2.1.0:b1 |
checkmk | checkmk | 2.1.0:b2 |
checkmk | checkmk | 2.1.0:b3 |
checkmk | checkmk | 2.1.0:b4 |
checkmk | checkmk | 2.1.0:b5 |
checkmk | checkmk | 2.1.0:b6 |
checkmk | checkmk | 2.1.0:b7 |
checkmk | checkmk | 2.1.0:b8 |
checkmk | checkmk | 2.1.0:b9 |
checkmk | checkmk | 2.1.0:p1 |
checkmk | checkmk | 2.1.0:p10 |
checkmk | checkmk | 2.1.0:p11 |
checkmk | checkmk | 2.1.0:p12 |
checkmk | checkmk | 2.1.0:p13 |
checkmk | checkmk | 2.1.0:p2 |
checkmk | checkmk | 2.1.0:p3 |
checkmk | checkmk | 2.1.0:p4 |
checkmk | checkmk | 2.1.0:p5 |
checkmk | checkmk | 2.1.0:p6 |
checkmk | checkmk | 2.1.0:p7 |
checkmk | checkmk | 2.1.0:p8 |
checkmk | checkmk | 2.1.0:p9 |
checkmk | checkmk | 2.0.0 |
checkmk | checkmk | 2.0.0:b1 |
checkmk | checkmk | 2.0.0:b2 |
checkmk | checkmk | 2.0.0:b3 |
checkmk | checkmk | 2.0.0:b4 |
checkmk | checkmk | 2.0.0:b5 |
checkmk | checkmk | 2.0.0:b6 |
checkmk | checkmk | 2.0.0:b7 |
checkmk | checkmk | 2.0.0:b8 |
checkmk | checkmk | 2.0.0:i1 |
checkmk | checkmk | 2.0.0:p1 |
checkmk | checkmk | 2.0.0:p10 |
checkmk | checkmk | 2.0.0:p11 |
checkmk | checkmk | 2.0.0:p12 |
checkmk | checkmk | 2.0.0:p13 |
checkmk | checkmk | 2.0.0:p14 |
checkmk | checkmk | 2.0.0:p15 |
checkmk | checkmk | 2.0.0:p16 |
checkmk | checkmk | 2.0.0:p17 |
checkmk | checkmk | 2.0.0:p18 |
checkmk | checkmk | 2.0.0:p19 |
checkmk | checkmk | 2.0.0:p2 |
checkmk | checkmk | 2.0.0:p20 |
checkmk | checkmk | 2.0.0:p21 |
checkmk | checkmk | 2.0.0:p22 |
checkmk | checkmk | 2.0.0:p23 |
checkmk | checkmk | 2.0.0:p24 |
checkmk | checkmk | 2.0.0:p25 |
checkmk | checkmk | 2.0.0:p26 |
checkmk | checkmk | 2.0.0:p27 |
checkmk | checkmk | 2.0.0:p28 |
checkmk | checkmk | 2.0.0:p29 |
checkmk | checkmk | 2.0.0:p3 |
checkmk | checkmk | 2.0.0:p4 |
checkmk | checkmk | 2.0.0:p5 |
checkmk | checkmk | 2.0.0:p6 |
checkmk | checkmk | 2.0.0:p7 |
checkmk | checkmk | 2.0.0:p8 |
checkmk | checkmk | 2.0.0:p9 |
checkmk | checkmk | 1.6.0 |
checkmk | checkmk | 1.6.0:b1 |
checkmk | checkmk | 1.6.0:b10 |
checkmk | checkmk | 1.6.0:b11 |
checkmk | checkmk | 1.6.0:b12 |
checkmk | checkmk | 1.6.0:b2 |
checkmk | checkmk | 1.6.0:b3 |
checkmk | checkmk | 1.6.0:b4 |
checkmk | checkmk | 1.6.0:b5 |
checkmk | checkmk | 1.6.0:b6 |
checkmk | checkmk | 1.6.0:b7 |
checkmk | checkmk | 1.6.0:b8 |
checkmk | checkmk | 1.6.0:b9 |
checkmk | checkmk | 1.6.0:p1 |
checkmk | checkmk | 1.6.0:p10 |
checkmk | checkmk | 1.6.0:p11 |
checkmk | checkmk | 1.6.0:p12 |
checkmk | checkmk | 1.6.0:p13 |
checkmk | checkmk | 1.6.0:p14 |
checkmk | checkmk | 1.6.0:p15 |
checkmk | checkmk | 1.6.0:p16 |
checkmk | checkmk | 1.6.0:p17 |
checkmk | checkmk | 1.6.0:p18 |
checkmk | checkmk | 1.6.0:p19 |
checkmk | checkmk | 1.6.0:p2 |
checkmk | checkmk | 1.6.0:p20 |
checkmk | checkmk | 1.6.0:p21 |
checkmk | checkmk | 1.6.0:p22 |
checkmk | checkmk | 1.6.0:p23 |
checkmk | checkmk | 1.6.0:p24 |
checkmk | checkmk | 1.6.0:p25 |
checkmk | checkmk | 1.6.0:p26 |
checkmk | checkmk | 1.6.0:p27 |
checkmk | checkmk | 1.6.0:p28 |
checkmk | checkmk | 1.6.0:p29 |
checkmk | checkmk | 1.6.0:p3 |
checkmk | checkmk | 1.6.0:p30 |
checkmk | checkmk | 1.6.0:p4 |
checkmk | checkmk | 1.6.0:p5 |
checkmk | checkmk | 1.6.0:p6 |
checkmk | checkmk | 1.6.0:p7 |
checkmk | checkmk | 1.6.0:p8 |
checkmk | checkmk | 1.6.0:p9 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
- CWE-200 - Exposure of Sensitive Information to an Unauthorized ActorThe product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
- CWE-532 - Insertion of Sensitive Information into Log FileInformation written to log files can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information.