← volver
CVE-2022-46302

Remote Code Execution with Root Privileges via Broad Apache Permissions

CVSS 8.8 HIGHEPSS 0.4%CWE-829
Broad access controls could allow site users to directly interact with the system Apache installation when providing the reverse proxy configurations for Tribe29's Checkmk <= 2.1.0p6, Checkmk <= 2.0.0p27, and all versions of Checkmk 1.6.0 (EOL) allowing an attacker to perform remote code execution with root privileges on the underlying host.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Productos afectados
Tribe29 · Checkmk

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →