Improper Certificate Validation in Checkmk Exchange plugin MikroTik allows attackers in MitM position to intercept traffic. This issue affects MikroTik: from 2.0.0 through 2.5.5, from 0.4a_mk through 2.0a.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://exchange.checkmk.com/p/mikrotik |
History
Fri, 27 Sep 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 27 Sep 2024 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Certificate Validation in Checkmk Exchange plugin MikroTik allows attackers in MitM position to intercept traffic. This issue affects MikroTik: from 2.0.0 through 2.5.5, from 0.4a_mk through 2.0a. | |
Title | Lack of TLS validation in plugin MikroTik on Checkmk Exchange | |
Weaknesses | CWE-295 | |
References |
| |
Metrics |
cvssV4_0
|
MITRE
Status: PUBLISHED
Assigner: Checkmk
Published: 2024-09-27T08:11:46.790Z
Updated: 2024-09-27T15:21:54.470Z
Reserved: 2024-06-20T10:03:09.178Z
Link: CVE-2024-38861
Vulnrichment
Updated: 2024-09-27T15:21:49.768Z
NVD
Status : Awaiting Analysis
Published: 2024-09-27T09:15:02.873
Modified: 2024-09-30T12:46:20.237
Link: CVE-2024-38861
Redhat
No data.