PT-2023-32577 · Checkmk · Checkmk

Port Zero

·

Published

2023-11-24

·

Updated

2024-07-23

·

CVE-2023-6251

CVSS v3.1

3.5

Low

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Checkmk versions prior to 2.2.0p15 Checkmk versions prior to 2.1.0p37 Checkmk versions prior to 2.0.0p40
Description The issue allows an authenticated attacker to delete user-messages for individual users due to a Cross-site Request Forgery (CSRF) flaw.
Recommendations For versions prior to 2.2.0p15, update to version 2.2.0p15 or later. For versions prior to 2.1.0p37, update to version 2.1.0p37 or later. For versions prior to 2.0.0p40, update to version 2.0.0p40 or later.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2023-6251

Affected Products

Checkmk