Description
Insufficient permission validation on multiple REST API Quick Setup endpoints in Checkmk 2.5.0 (beta) before version 2.5.0b2 and 2.4.0 before version 2.4.0p25 allows low-privileged users to perform unauthorized actions or obtain sensitive information
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://checkmk.com/werk/18989 |
|
History
Wed, 01 Apr 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insufficient permission validation on multiple REST API Quick Setup endpoints in Checkmk 2.5.0 (beta) before version 2.5.0b2 and 2.4.0 before version 2.4.0p25 allows low-privileged users to perform unauthorized actions or obtain sensitive information | |
| Title | Insufficient permission validation on multiple REST API Quick Setup endpoints | |
| First Time appeared |
Checkmk
Checkmk checkmk |
|
| Weaknesses | CWE-280 | |
| CPEs | cpe:2.3:a:checkmk:checkmk:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Checkmk
Checkmk checkmk |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Checkmk
Published:
Updated: 2026-04-01T10:07:21.670Z
Reserved: 2026-01-21T14:39:24.128Z
Link: CVE-2026-24096
No data.
Status : Received
Published: 2026-04-01T11:15:58.423
Modified: 2026-04-01T11:15:58.423
Link: CVE-2026-24096
No data.
OpenCVE Enrichment
No data.
Weaknesses