PT-2026-61843 · Checkmk · Checkmk
CVE-2026-8593
·
Published
2026-07-21
·
Updated
2026-07-21
CVSS v4.0
5.3
Medium
| Vector | AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Checkmk versions 2.5.0 through 2.5.0p8
Checkmk versions 2.4.0 through 2.4.0p33
Checkmk versions 2.3.0 through 2.3.0p48
Checkmk version 2.2.0
Description
Improper permission enforcement allows users without the necessary authorizations to view and modify Business Intelligence (BI) packs and rules.
Recommendations
Update Checkmk version 2.5.0 to 2.5.0p9 or later.
Update Checkmk version 2.4.0 to 2.4.0p34 or later.
Update Checkmk version 2.3.0 to 2.3.0p49 or later.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Checkmk