PT-2026-61843 · Checkmk · Checkmk

CVE-2026-8593

·

Published

2026-07-21

·

Updated

2026-07-21

CVSS v4.0

5.3

Medium

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Checkmk versions 2.5.0 through 2.5.0p8 Checkmk versions 2.4.0 through 2.4.0p33 Checkmk versions 2.3.0 through 2.3.0p48 Checkmk version 2.2.0
Description Improper permission enforcement allows users without the necessary authorizations to view and modify Business Intelligence (BI) packs and rules.
Recommendations Update Checkmk version 2.5.0 to 2.5.0p9 or later. Update Checkmk version 2.4.0 to 2.4.0p34 or later. Update Checkmk version 2.3.0 to 2.3.0p49 or later. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-8593

Affected Products

Checkmk