Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-71406
HistoryFeb 28, 2022 - 12:00 a.m.

Checkmk Cross-Site Scripting Vulnerability (CNVD-2022-71406)

2022-02-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
checkmk
xss
vulnerability
version 2.0.0p19
version 1.6.0p27

EPSS

0.001

Percentile

22.7%

Checkmk is an editor. A cross-site scripting vulnerability exists in Checkmk versions 2.0.0p19 and earlier and 1.6.0p27 and earlier. The vulnerability stems from the failure to properly escape the title of a predefined condition when displayed as a condition, which can be exploited by attackers to execute JavaScript code on the client side.

EPSS

0.001

Percentile

22.7%