Vulnerabilities > CVE-2024-38863 - Unspecified vulnerability in Checkmk 2.1.0/2.2.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
Exposure of CSRF tokens in query parameters on specific requests in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35 and <2.1.0p48 could lead to a leak of the token to facilitate targeted phishing attacks.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 125 |