Description
Transmission of credentials within query parameters in Checkmk <= 2.1.0p26, <= 2.0.0p35, and <= 2.2.0b6 (beta) may cause the automation user's secret to be written to the site Apache access log.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-35522 | Transmission of credentials within query parameters in Checkmk <= 2.1.0p26, <= 2.0.0p35, and <= 2.2.0b6 (beta) may cause the automation user's secret to be written to the site Apache access log. |
References
| Link | Providers |
|---|---|
| https://checkmk.com/werk/15189 |
|
History
Thu, 30 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Tribe29
Published:
Updated: 2025-01-30T14:18:33.648Z
Reserved: 2023-04-25T08:49:15.442Z
Link: CVE-2023-31207
Updated: 2024-08-02T14:45:26.020Z
Status : Modified
Published: 2023-05-02T09:15:10.120
Modified: 2025-01-30T15:15:15.003
Link: CVE-2023-31207
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD