Lucene search

K
nvd[email protected]NVD:CVE-2022-48321
HistoryFeb 20, 2023 - 5:15 p.m.

CVE-2022-48321

2023-02-2017:15:12
CWE-20
CWE-918
web.nvd.nist.gov
2
ssrf
checkmk
tribe29
cve-2022-48321

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

EPSS

0

Percentile

13.5%

Limited Server-Side Request Forgery (SSRF) in agent-receiver in Tribe29’s Checkmk <= 2.1.0p11 allows an attacker to communicate with local network restricted endpoints by use of the host registration API.

Affected configurations

Nvd
Node
checkmkcheckmkMatch2.1.0-
OR
checkmkcheckmkMatch2.1.0b1
OR
checkmkcheckmkMatch2.1.0b2
OR
checkmkcheckmkMatch2.1.0b3
OR
checkmkcheckmkMatch2.1.0b4
OR
checkmkcheckmkMatch2.1.0b5
OR
checkmkcheckmkMatch2.1.0b6
OR
checkmkcheckmkMatch2.1.0b7
OR
checkmkcheckmkMatch2.1.0b8
OR
checkmkcheckmkMatch2.1.0b9
OR
checkmkcheckmkMatch2.1.0p1
OR
checkmkcheckmkMatch2.1.0p10
OR
checkmkcheckmkMatch2.1.0p11
OR
checkmkcheckmkMatch2.1.0p2
OR
checkmkcheckmkMatch2.1.0p3
OR
checkmkcheckmkMatch2.1.0p4
OR
checkmkcheckmkMatch2.1.0p5
OR
checkmkcheckmkMatch2.1.0p6
OR
checkmkcheckmkMatch2.1.0p7
OR
checkmkcheckmkMatch2.1.0p8
OR
checkmkcheckmkMatch2.1.0p9
VendorProductVersionCPE
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:-:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b1:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b2:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b3:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b4:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b5:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b6:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b7:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b8:*:*:*:*:*:*
checkmkcheckmk2.1.0cpe:2.3:a:checkmk:checkmk:2.1.0:b9:*:*:*:*:*:*
Rows per page:
1-10 of 211

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

EPSS

0

Percentile

13.5%